1 | initial version |
First, -port 53
is an invalid option so you should remove that.
Otherwise the -f "port 53"
option should capture all DNS traffic. Are you capturing on the right interface? If you're not sure which interface to capture on, you could try capturing on multiple interfaces at once using a series of -i <n>
options for as many interfaces as you have.