Your company here, and a link to your site. Click to find out more.

bpfmon - Man Page

BPF based visual packet rate monitor



bpfmon [-autzvIiLlnNh] <device> '<bpf_filter_code>'

bpfmon [-autzvIiLlnNh] iptables '[<table>] <chain> <rulenum>'

bpfmon [-autzvIiLlnNh] iptables [select]


bpfmon (like tcpdump) uses BPF filter to select packets that match the filter. While with tcpdump it is easy to see what packets match the filter, bpfmon shows how much are the matches packets in terms of bytes per second and packets per second.

bpfmon displays the information in pseudo-graphical text interface, developed for modern terminals, but it also supports pure ASCII display.

In addition, bpfmon allows instead of monitoring packets matching a BPF filter to get its data from an iptables rule (on Linux systems).

In interactive mode, there are hot keys to display help or modify the mode of operation.

Without any arguments, bpfmon will display its version and options help.



Use ASCII drawing characters


Use UTF-8 drawing characters


Use no interface (simple text output)


Use horizontal full-screen interface


Use vertical full-screen interface


Show history in vertical full-screen


Hide history in vertical full-screen


Show legend in vertical full-screen


Hide legend in vertical full-screen -n Show interface white on black


Show interface inverse (black on white)


Show usage information and exit

Keyboard Shortcuts

h,  H,  ?

Toggle help screen

a,  A

switch to ASCII drawing chars

u,  U

switch to UTF-8 drawing chars

m,  M

toggle horizontal/vertical mode

i,  I

toggle history in vertical mode

l,  L

toggle legend in vertical mode

r,  R,  Ctrl-L

refresh screen

q,  Q,  Ctrl-C


See Also

tcpdump(8), bpf(4), pcap-filter(7)


The bpfmon program was written by Boian Bonev from 2014 to 2021.

This manual page was written by Boian Bonev for the Debian project and is placed in the public domain.


September 2020