Wireshark-users: Re: [Wireshark-users] HTTP dump with tshark...
From: John Doe <jdmls@xxxxxxxxx>
Date: Thu, 17 Jul 2008 05:25:58 -0700 (PDT)
> Do I understand correctly that you issue the "telnet 192.168.16.23 8880"
> from the box that has the ip address 192.168.16.23? If so, the packets
> won't pass the eth0 interface and therefor will not be seen by libpcap.
> 
> AFAIK you can use the "any" interface on a linux box to capture local
> traffic.
> 
> Or you could do the telnet from another system...

Damn, silly me, forgot about that!

Thx a lot,
JD