tcpdump
uses libpcap
and libpcap
processes packets before they get processed by the firewall, so the answer is "yes".
Will tcpdump see packets that are being dropped by iptables?
tcpdump
uses libpcap
and libpcap
processes packets before they get processed by the firewall, so the answer is "yes".