Terminal & tcpdump
We have had a laptop stolen and wish to find out if it ever connects to our network. I have been told that tcpdump, in Terminal, can compile a list of connected computers. In an effort to find out how to use it I opened Terminal and typed "info tcpdump". What followed was page after page after page of instructions and parameters, etc. which did more to bewilder me than enlighten me.
We have the serial number, Airport MAC address and Ethernet MAC address of the laptop, and need to be notified if it connects. Tracking down its physical location will then be relatively straightforward.
What commands (in simple English - for a not-too-technical person) should I use to keep a watch for a particular MAC address? From what I have read so far about packet sniffers, etc., I would imagine there is a filter of some sort which can be set.
Any help, suggestions, etc. would be greatly appreciated. My experience with Terminal has been absolutely minimal and very cautious at that.
Quadra 700 - sys 7.0.1•, PowerMac G4 DP 1.25 GHz - sys 10.4.11