Автор: gryu
Дата сообщения: 18.10.2013 11:44
tcpdump вообще то я не в курсе как использовать.
Т.е. в смысле команда понятна.
Начинает сыпать в консоли кучей инфы про хождение пакетов.
В частности
[more]
tcpdump -i bce0 (внешний)
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on bce0, link-type EN10MB (Ethernet), capture size 65535 bytes
15:46:35.716982 IP <myhost>ssh > 87.*.*.140.50043: Flags [P.], seq 475360549:475360745, ack 31402956, win 1026, length 196
15:46:35.732232 IP 87.*.*.140.50043 > <myhost>ssh: Flags [.], ack 196, win 16350, length 0
15:46:36.717258 IP <myhost>54989 > ns.провайдер.domain: 58587+ PTR? 140.*.*.87.in-addr.arpa. (45)
15:46:36.767183 IP ns.провайдер.domain > <myhost>54989: 58587 NXDomain 0/1/0 (99)
15:46:36.767489 IP <myhost>ssh > 87.*.*.140.50043: Flags [P.], seq 196:376, ack 1, win 1026, length 180
15:46:36.767505 IP <myhost>ssh > 87.*.*.140.50043: Flags [P.], seq 376:524, ack 1, win 1026, length 148
15:46:36.779535 IP 87.*.*.140.50043 > <myhost>ssh: Flags [.], ack 524, win 16268, length 0
15:46:37.077046 CDPv1, ttl: 120s, Device-ID 'wf-320-prestij', length 88
15:46:37.437346 CDPv1, ttl: 120s, Device-ID 'wf-320-electronics', length 92
^C
9 packets captured
22 packets received by filter
0 packets dropped by kernel
(внутренний)
tcpdump -i bce1
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on bce1, link-type EN10MB (Ethernet), capture size 65535 bytes
15:56:24.548862 STP 802.1w, Rapid STP, Flags [Learn, Forward, Agreement], bridge -id 8000.00:16:e0:73:5f:80.801a, length 47
15:56:26.548849 STP 802.1w, Rapid STP, Flags [Learn, Forward, Agreement], bridge -id 8000.00:16:e0:73:5f:80.801a, length 47
15:56:28.548787 STP 802.1w, Rapid STP, Flags [Learn, Forward, Agreement], bridge -id 8000.00:16:e0:73:5f:80.801a, length 47
15:56:30.548829 STP 802.1w, Rapid STP, Flags [Learn, Forward, Agreement], bridge -id 8000.00:16:e0:73:5f:80.801a, length 47
15:56:31.314102 IP 192.168.1.10.63249 > 192.168.1.253.domain: 32508+ A? ping3.te amviewer.com. (38)
15:56:31.314115 IP 192.168.1.253 > 192.168.1.10: ICMP 192.168.1.253 udp port dom ain unreachable, length 36
15:56:31.317032 IP 192.168.1.10.63250 > 192.168.1.253.domain: 26057+ A? ping3.te amviewer.com. (38)
15:56:31.317038 IP 192.168.1.253 > 192.168.1.10: ICMP 192.168.1.253 udp port dom ain unreachable, length 36
15:56:31.320346 IP 192.168.1.10.63251 > 192.168.1.253.domain: 49554+ A? ping3.te amviewer.com. (38)
15:56:31.320353 IP 192.168.1.253 > 192.168.1.10: ICMP 192.168.1.253 udp port dom ain unreachable, length 36
15:56:31.322484 IP 192.168.1.10.63252 > 192.168.1.253.domain: 29405+ A? ping3.te amviewer.com. (38)
15:56:31.322490 IP 192.168.1.253 > 192.168.1.10: ICMP 192.168.1.253 udp port dom ain unreachable, length 36
^C
12 packets captured
13 packets received by filter
0 packets dropped by kernel
root@mail:/usr/home/gusev #
[/more]
192.168.1.10 - это та машина у которой вручную прописан IP под настраиваемый сервер.
Выёти на неё не могу никак.
Изнутри с других машин 192.168.0.* она не видна.
Снаружи тоже не коннектится (тимвьювер стоит).