Solved

Deciphering TCPDUMP

Posted on 1998-11-14
1
231 Views
Last Modified: 2013-12-26
Can someone give me a site that breaks down the output of TCPDUMP? Here is a sample output that i cant figure out:

21:52:32.058766 d196-tanna.net.1023 > praise.com.http: S 432195:432211(16) win 10052
21:52:32.228766 d196-tanna.net.1025 > ns1.tanna.net.domain: 39598+ (42)
21:52:32.658766 ns1.tanna.net.domain > d196-tanna.net.1025: 39598* 1/3/3 (203) (DF)
21:52:32.658766 d196-tanna.net.1027 > ns1.tanna.net.domain: 39599+ (46)
21:52:32.918766 ns1.tanna.net.domain > d196-tanna.net.1027: 39599* 1/2/2 (187) (DF)
21:52:32.918766 d196-tanna.net.1028 > ns1.tanna.net.domain: 39600+ (45)
21:52:33.158766 ns1.tanna.net.domain > d196-tanna.net.1028: 39600* 1/2/2 (160) (DF)

I understand the first line in that it is sending a "S"YN request with a ISN (Initial Sequence #) of 432195 and it appears to be sending a data packet of 16 bytes in size with a window size of a little of 10k.  Besides that i have no idea what the rest is saying ie. "DF", "*", "1/2/2", ".", etc...

Is there a site that breaks down this information or is the best way just to play around with it?

Thanks
0
Comment
Question by:aniston
1 Comment
 
LVL 51

Accepted Solution

by:
ahoffmann earned 20 total points
ID: 1294152
looks like an DNS answer, (DF) means don't fragment IP (see man tcpdump)
0

Featured Post

Free Tool: Subnet Calculator

The subnet calculator helps you design networks by taking an IP address and network mask and returning information such as network, broadcast address, and host range.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
cat dog challenge 18 127
Host to IP 7 80
either24  challenge 19 101
My project did see openJDK that I installed. What could be the problem 7 152
Here is how to use MFC's automatic Radio Button handling in your dialog boxes and forms.  Beginner programmers usually start with a OnClick handler for each radio button and that's just not the right way to go.  MFC has a very cool system for handli…
Introduction: Database storage, where is the exe actually on the disc? Playing a game selected randomly (how to generate random numbers).  Error trapping with try..catch to help the code run even if something goes wrong. Continuing from the seve…
This video will show you how to get GIT to work in Eclipse.   It will walk you through how to install the EGit plugin in eclipse and how to checkout an existing repository.
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

837 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question