Agreed with others: Use tcpdump, then Wireshark as a viewer of the resulting capture file. This is the daily SOP at my workplace for the types of problems that require a packet capture. Also works well with snoop on Sun boxes. -- Nate Duehr Sent from my iPhone