tcpdump udp portrange 1000-5000 -w capture.pcap

The above can be opened with wireshark for inspection.

Written by Matt Cooper
Hi, I'm Matt Cooper. I started this blog to pretty much act as a brain dump area for things I learn from day to day. You can contact me at: matt@linuxtutorial.co.uk.