Solved

Test SYN-ACK

Posted on 2007-11-19
15
1,047 Views
Last Modified: 2012-06-21
Good morning all.  I need to know how to test syn-ack command to see if there is a response.  The problem i have is that a printer is not working at remote site that is controlled in belguim.  One of the lads from has tested it and says he is not getting a response although he can ping the ip.  I need some freeware or a way to be able to test this command as i dont have any access to linux
0
Comment
Question by:dann47
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 8
  • 5
  • 2
15 Comments
 
LVL 8

Expert Comment

by:ubig
ID: 20311180
You could use Wireshark to trace network packets: http://www.wireshark.org/about.html. It could be an overkill though.
To check if you have SYN-ACK problem you could try to print something and then check your open TCP connections with netstat -na. If your see active TCP sessions with SYN_SENT status it could mean your workstation does not receive ACK.
0
 
LVL 7

Author Comment

by:dann47
ID: 20311248
Thanks, i have tried the netstat approch to no avail.  Be nice if it was a workstation.

Does look a bit overkill for the requirment
0
 
LVL 51

Expert Comment

by:Keith Alabaster
ID: 20314965
Can you clarify your comment please? Youy say that the local engineer can ping the device - if it can be pinged, then a reply is being returned. If a reply is being received then syn-ack is pointless.
0
Use Case: Protecting a Hybrid Cloud Infrastructure

Microsoft Azure is rapidly becoming the norm in dynamic IT environments. This document describes the challenges that organizations face when protecting data in a hybrid cloud IT environment and presents a use case to demonstrate how Acronis Backup protects all data.

 
LVL 7

Author Comment

by:dann47
ID: 20318302
Ok no problems, thanks for responding.  He has raised a test for an ack response, it is not responded his results as below

Oct 12 05:46:39:     TCP src=4059, dst=9100, seq=2235896744, ack=0, win=65535 SYN
Oct 12 05:46:42: IP: tableid=0, s=172.16.10.23 (Serial0.1), d=192.168.101.153 (FastEthernet0), routed via FIB
Oct 12 05:46:42: IP: s=172.16.10.23 (Serial0.1), d=192.168.101.153 (FastEthernet0), g=192.168.101.153, len 48, forward
Oct 12 05:46:42:     TCP src=4059, dst=9100, seq=2235896744, ack=0, win=65535 SYN
Oct 12 05:46:48: IP: tableid=0, s=172.16.10.23 (Serial0.1), d=192.168.101.153 (FastEthernet0), routed via FIB
Oct 12 05:46:48: IP: s=172.16.10.23 (Serial0.1), d=192.168.101.153 (FastEthernet0), g=192.168.101.153, len 48, forward
Oct 12 05:46:48:     TCP src=4059, dst=9100, seq=2235896744, ack=0, win=65535 SYN
Oct 12 05:46:54: IP: tableid=0, s=172.16.10.20 (Serial0.1), d=192.168.101.153 (FastEthernet0), routed via FIB
0
 
LVL 51

Expert Comment

by:Keith Alabaster
ID: 20319589
OK - so he cannot successfully ping the target device.
Interesting that it shows two different source IP's in the three packets sent.

I would be interested in seeing a routing table output and the results of a traceroute from source to destination here.



0
 
LVL 7

Author Comment

by:dann47
ID: 20320191
Yep the head office is in Belguim on a different WAN, i can traceroute quite happily and so can he to the final destinations.
0
 
LVL 7

Author Comment

by:dann47
ID: 20320198
Also he can ping the device, he has proven that to me
0
 
LVL 8

Accepted Solution

by:
ubig earned 500 total points
ID: 20320378
If printer can be pinged but cannot be reached by TCP, I would suggest to check packet filtering on routers between source PC and printer. It is possible that ICMP packets are enabled to pass through but not all TCP ports are.
0
 
LVL 7

Author Comment

by:dann47
ID: 20320450
UBIG, could you expand please, i as i do feel that it is a firewall problem
0
 
LVL 8

Expert Comment

by:ubig
ID: 20320496
Packet filtering is one of technique used by firewalls to restrict network traffic. In reality almost all routers has implemented such a functionality. It is possible to allow some packets to pass through the router and restrict others. If you have firewall between printing PC (or print server if you are using one) and printer itself, that applies to firewall too.

To make sure there are no restriction on TCP or IP level, you should ask your network engineers to check packet filters on each router or firewall between printing PC or print server and printer. You can find out which routers should be checked by issuing command tracert.
0
 
LVL 7

Author Comment

by:dann47
ID: 20320504
Ah process of elimitaion states thought that it only stopped when we installed the new firewall
0
 
LVL 7

Author Comment

by:dann47
ID: 20326253
In the case of printing what kind of packet would i be looking for, in relation to port 9100 - jet direct
0
 
LVL 8

Expert Comment

by:ubig
ID: 20331098
TCP port 9100 is what you should look for. I'm not absolutely sure if that is all you need but your router engineer could log all packets coming back and forth and enable additional ports in case of printing problems by looking at that trace log.
0
 
LVL 8

Expert Comment

by:ubig
ID: 20331110
Here is a reference about TCP port usage for JetDirect: http://aplawrence.com/Jeffl/printports.html
0
 
LVL 7

Author Comment

by:dann47
ID: 20333124
FOund the problem, got one of junipers engineers to diagnose from the information ubig gave me, problem was indeed a router packet filtering issue - Customer's firewall was dropping packets sent to printer on trust side from untrust. Have disabled TCP-syn-check and it's working.

Thanks all for time and advice
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

More or less everybody in the IT market understands the basics of Networking, however when we start talking about Storage Networks, things get a bit dizzier, and this is where I would like to help.
Hyper-convergence systems have taken the IT world by storm and have quickly started to change our point of view of how the data center should and could be architected. In this article, I’ll explain the benefits of employing a hyper-converged system …
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…
How to Install VMware Tools in Red Hat Enterprise Linux 6.4 (RHEL 6.4) Step-by-Step Tutorial

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question