Ticket #2009: tcpdump.log

File tcpdump.log, 5.4 KB (added by diver, 15 years ago)
Line 
1ifconfig /dev/net/ipro1000/0
2/dev/net/ipro1000/0
3 Hardware Type: Ethernet, Address: 00:1c:c0:07:f9:52
4 Media Type: 100 MBit, 100BASE-TX
5 inet addr: 10.54.253.125, Bcast: 10.54.255.255, Mask: 255.255.0.0
6 MTU: 1500, Metric: 0, up broadcast link auto-configured
7 Receive: 45921 packets, 0 errors, 3123549 bytes, 0 mcasts, 0 dropped
8 Transmit: 1040 packets, 0 errors, 87878 bytes, 0 mcasts, 0 dropped
9 Collisions: 0
10
11
12route -n
13 127.0.0.1 mask - loop, host local
14 10.54.253.125 mask - /dev/net/ipro1000/0, host local
15 10.54.0.0 mask 255.255.0.0 /dev/net/ipro1000/0
16 127.0.0.0 mask 255.0.0.0 loop
17 0.0.0.0 mask 0.0.0.0 gateway 10.54.0.2 /dev/net/ipro1000/0, default
18
19
20
21tcpdump host 10.54.253.125
22tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
23listening on /dev/net/ipro1000/0, link-type EN10MB (Ethernet), capture size 68 bytes
24
25
26Here I am starting Bezilla:
27
28
2900:06:53.490567 IP 10.54.253.125.bootpc > bill.gelios.net.bootps: BOOTP/DHCP, Request [|bootp]
3000:06:53.491157 IP 10.54.253.125.53600 > bill.gelios.net.domain: 64692+[|domain]
3100:06:53.491297 IP bill.gelios.net.domain > 10.54.253.125.53600: 64692*[|domain]
3200:06:53.492341 arp who-has 10.54.253.125 tell 10.54.0.2
3300:06:53.493711 arp reply 10.54.253.125 is-at 00:1c:c0:07:f9:52 (oui Unknown)
3400:06:53.493805 IP 10.54.253.125.53601 > bill.gelios.net.domain: 64693+[|domain]
3500:06:53.493923 IP bill.gelios.net.bootps > 10.54.253.125.bootpc: BOOTP/DHCP, Reply, length 568
3600:06:53.494028 IP bill.gelios.net.domain > 10.54.253.125.53601: 64693 NXDomain*[|domain]
3700:06:53.494096 IP 10.54.0.2 > 10.54.253.125: ICMP redirect bill.gelios.net to host bill.gelios.net, length 290
3800:06:55.907856 IP 10.54.253.125.64366 > bill.gelios.net.domain: 44811+[|domain]
3900:06:56.911312 IP bill.gelios.net.domain > 10.54.253.125.64366: 44811[|domain]
4000:06:56.913689 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 407142[|tcp]>
4100:06:57.374527 IP 10.54.253.125.54905 > bill.gelios.net.domain: 64694+[|domain]
4200:06:57.374677 IP bill.gelios.net.domain > 10.54.253.125.54905: 64694[|domain]
4300:06:58.913758 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 409095[|tcp]>
4400:07:00.913811 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 411048[|tcp]>
4500:07:02.913862 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 413001[|tcp]>
4600:07:04.913916 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 414954[|tcp]>
4700:07:06.913966 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 416908[|tcp]>
4800:07:08.914020 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 418861[|tcp]>
4900:07:10.914071 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 420814[|tcp]>
5000:07:12.914125 IP 10.54.253.125.40011 > moz.org01.nslb.sj.mozilla.com.http: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 422767[|tcp]>
51It repeats endlessly
52
53pcap_stats: pcap_stats: Invalid Argument
54/bin> tcpdump host 10.54.253.125 -n
55tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
56listening on /dev/net/ipro1000/0, link-type EN10MB (Ethernet), capture size 68 bytes
5700:09:26.917506 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 553630[|tcp]>
5800:09:28.917684 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 555583[|tcp]>
5900:09:30.917724 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 557536[|tcp]>
6000:09:32.917763 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 559489[|tcp]>
6100:09:34.917803 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 561443[|tcp]>
6200:09:36.917841 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 563396[|tcp]>
6300:09:38.917880 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 565349[|tcp]>
6400:09:40.917917 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 567302[|tcp]>
6500:09:42.917958 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 569255[|tcp]>
6600:09:44.917996 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 571208[|tcp]>
6700:09:46.918036 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 573162[|tcp]>
6800:09:48.918073 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 575115[|tcp]>
6900:09:50.918114 IP 10.54.253.125.40011 > 63.245.209.11.80: S 26057103:26057103(0) win 65535 <mss 1460,nop,nop,timestamp 577068[|tcp]>
70It repeats endlessly