Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

First, -port 53 is an invalid option so you should remove that.

Otherwise the -f "port 53" option should capture all DNS traffic. Are you capturing on the right interface? If you're not sure which interface to capture on, you could try capturing on multiple interfaces at once using a series of -i <n> options for as many interfaces as you have.