ubuntuusers.de

tcpdump

Autor:
darkiop
Datum:
5. Februar 2015 17:26
Code:
1
2
3
4
5
6
7
┌─(root@northwind Do, 05 Feb 15)─────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────(/home/pi)─┐
└─(17:22 $)─> tcpdump -vvveni any port 53 and host 192.168.1.20
tcpdump: listening on any, link-type LINUX_SLL (Linux cooked), capture size 65535 bytes
17:25:24.108630  In bc:5f:f4:83:b0:fe ethertype IPv4 (0x0800), length 72: (tos 0x0, ttl 128, id 8601, offset 0, flags [none], proto UDP (17), length 56)
    192.168.1.20.58435 > 192.168.1.42.53: [udp sum ok] 15658+ A? google.com. (28)
17:25:24.170555 Out b8:27:eb:d9:90:fe ethertype IPv4 (0x0800), length 248: (tos 0x0, ttl 64, id 8027, offset 0, flags [DF], proto UDP (17), length 232)
    192.168.1.42.53 > 192.168.1.20.58435: [bad udp cksum 0x8474 -> 0x1a2e!] 15658 q: A? google.com. 11/0/0 google.com. [4m59s] A 173.194.44.37, google.com. [4m59s] A 173.194.44.38, google.com. [4m59s] A 173.194.44.40, google.com. [4m59s] A 173.194.44.34, google.com. [4m59s] A 173.194.44.41, google.com. [4m59s] A 173.194.44.39, google.com. [4m59s] A 173.194.44.32, google.com. [4m59s] A 173.194.44.35, google.com. [4m59s] A 173.194.44.33, google.com. [4m59s] A 173.194.44.36, google.com. [4m59s] A 173.194.44.46 (204)