将设为首页浏览此站
开启辅助访问 天气与日历 收藏本站联系我们切换到窄版

易陆发现论坛

 找回密码
 开始注册
查看: 5929|回复: 7
收起左侧

tcpdump 抓包

[复制链接]
发表于 2018-12-12 20:02:59 | 显示全部楼层 |阅读模式

马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。

您需要 登录 才可以下载或查看,没有帐号?开始注册

x
sudo tcpdump -i bond1.104 -v -vv -t   ; q( c+ O  V+ T; f% x6 K( s

' k  i( g% s7 q1 p$ r
3 T/ I' l: ]/ t, m- }sudo tcpdump -i ens1f0 -vv -w /tmp/ens1f0.cap     抓包写如文件中
" H* ]7 C( {% v/ w% M' D
 楼主| 发表于 2018-12-13 15:01:49 | 显示全部楼层
sudo tcpdump -i bond1.104 -vvv -t 6 F5 u/ h- S3 [
tcpdump: WARNING: bond1.104: no IPv4 address assigned. k: B4 t  t) F8 f7 e
tcpdump: listening on bond1.104, link-type EN10MB (Ethernet), capture size 65535 bytes2 C  [# ~" L% ^& q7 P4 z
IP (tos 0x0, ttl 64, id 18437, offset 0, flags [DF], proto ICMP (1), length 84)
5 Q! ^4 Z( U& Y  A! ~    CD--6 > 10.64.35.100: ICMP echo request, id 7024, seq 437, length 64  g: w- n! [* F/ v7 w
IP (tos 0x0, ttl 64, id 18437, offset 0, flags [DF], proto ICMP (1), length 84)
& u, ]2 [' F6 I) K' |7 S0 e5 X# p    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 437, length 64
, O- r" q& R3 n6 f5 _" ZIP (tos 0x0, ttl 64, id 18696, offset 0, flags [DF], proto ICMP (1), length 84)& t. ]0 D1 r; W" s0 a
    CD--6 > 10.4.5.100: ICMP echo request, id 7024, seq 438, length 642 P  |/ w+ w, v; L$ l( X' }
IP (tos 0x0, ttl 64, id 18696, offset 0, flags [DF], proto ICMP (1), length 84)3 \% T$ C& Q9 l5 G0 X
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 438, length 64
" f5 `  l# Y  P1 pIP (tos 0x0, ttl 64, id 18958, offset 0, flags [DF], proto ICMP (1), length 84)
# o9 K4 Q7 A9 Z  y/ X    CD--6 > 10.4.5.100: ICMP echo request, id 7024, seq 439, length 64
, `6 S5 g6 O; D0 k2 n' \IP (tos 0x0, ttl 64, id 18958, offset 0, flags [DF], proto ICMP (1), length 84)2 L8 k9 @( C* s! ~/ M. h- j
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 439, length 64
# |) O/ X% L+ zIP (tos 0x0, ttl 64, id 19338, offset 0, flags [DF], proto ICMP (1), length 84)
3 N$ w, ~, k5 T+ i: J3 `1 M# F! N6 M    CD--6 > 10.64.35.100: ICMP echo request, id 7024, seq 440, length 645 M2 |. Y9 V  v0 I
IP (tos 0x0, ttl 64, id 19338, offset 0, flags [DF], proto ICMP (1), length 84)  t+ B/ c6 C6 D- F! X: ~% d
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 440, length 64
发表于 2018-12-14 18:13:01 | 显示全部楼层
sudo tcpdump -i bond1 -vv -e icmp  抓取ICMP包。
发表于 2018-12-14 18:15:28 | 显示全部楼层
sudo  tcpdump -i vnet7 -vv -e icmp   抓取vnet7子接口地址
 楼主| 发表于 2018-12-24 16:20:40 | 显示全部楼层
sudo tcpdump -i bond1 -vv icmp  
2 e, j' q' M: ~$ ~tcpdump: WARNING: bond1: no IPv4 address assigned; `5 P( _* ~- K6 t
tcpdump: listening on bond1, link-type EN10MB (Ethernet), capture size 65535 bytes
; `7 ?7 H$ H; h4 o- p+ ^16:16:57.141135 IP (tos 0x0, ttl 62, id 52282, offset 0, flags [DF], proto ICMP (1), length 84)  X# l' J- v4 I: q) {1 H! G  `! I; d( G
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1157, length 64) ~( t/ r1 q% [7 t6 @2 I0 g4 m
16:16:58.141200 IP (tos 0x0, ttl 62, id 52414, offset 0, flags [DF], proto ICMP (1), length 84)
- z( F( i6 l3 Q% _, q/ H$ `7 X    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1158, length 64  Z6 k/ A" j2 D3 r
16:16:59.141214 IP (tos 0x0, ttl 62, id 53243, offset 0, flags [DF], proto ICMP (1), length 84)
+ y  E3 X9 |1 q9 m- X" h    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1159, length 64/ P1 Z' r" q- s% O2 J1 [$ e6 {
16:17:00.141085 IP (tos 0x0, ttl 62, id 53622, offset 0, flags [DF], proto ICMP (1), length 84)9 }* O1 p) d8 H) H
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1160, length 64
 楼主| 发表于 2018-12-24 16:22:16 | 显示全部楼层
sudo tcpdump -i bond1 -vv -e icmp  ) O3 {1 ?% B! I/ h" C/ t
tcpdump: WARNING: bond1: no IPv4 address assigned
3 t4 J; i; Q) b4 }tcpdump: listening on bond1, link-type EN10MB (Ethernet), capture size 65535 bytes3 ~, k# O" Q/ Y& V' M5 U2 B0 z
16:21:23.140673 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 47732, offset 0, flags [DF], proto ICMP (1), length 84)- Z; h# ^! T- @2 m3 W2 R$ D6 u* b" X
0 s, I2 z" y+ R' A0 L

( N6 I( X3 Y+ e# L# ?3 d( |/ w* @
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1423, length 64
$ M3 n  f9 }' D  q6 |- ~0 q1 C& E7 S16:21:24.140663 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 47779, offset 0, flags [DF], proto ICMP (1), length 84)
! U. P) p8 e2 P* o    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1424, length 64" y* z' m, G2 |, t1 O
16:21:25.140651 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 48122, offset 0, flags [DF], proto ICMP (1), length 84)7 c& U5 t8 g4 i' o2 ~; ^7 C' O8 m$ \
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1425, length 64! w- V3 l3 V6 D$ Q" r6 N: u
16:21:26.140629 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 48938, offset 0, flags [DF], proto ICMP (1), length 84)
- k3 ?4 k1 s  W5 V! F    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1426, length 648 b+ P! c$ {' @& G9 T( p) ]
16:21:27.140613 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 49679, offset 0, flags [DF], proto ICMP (1), length 84)
& r+ W& I4 I$ f( w: w9 Z6 n- U) V. w    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1427, length 64& y4 w. b0 M* v. c. k+ s" S
16:21:28.140616 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 50377, offset 0, flags [DF], proto ICMP (1), length 84)
, ^6 f5 }( R/ x" }7 ^* A' n+ m3 ?5 L    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1428, length 64$ C; v% b9 E8 {. c# Y
16:21:29.140633 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 50603, offset 0, flags [DF], proto ICMP (1), length 84)7 \" I7 A; C: ~4 ?8 ?
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1429, length 641 Q3 [$ I0 J/ d6 q8 B
16:21:30.140614 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 51285, offset 0, flags [DF], proto ICMP (1), length 84)
 楼主| 发表于 2018-12-24 16:22:34 | 显示全部楼层
sudo tcpdump -i bond1 -vvv -e icmp  
2 S  m# m' r) v) X3 Q; g, gtcpdump: WARNING: bond1: no IPv4 address assigned
; ], J7 z" h8 Stcpdump: listening on bond1, link-type EN10MB (Ethernet), capture size 65535 bytes
% F/ U% F8 z8 h+ {16:22:01.140593 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 1576, offset 0, flags [DF], proto ICMP (1), length 84)/ J! v. P" |. k
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1461, length 649 X3 p4 Z2 `8 m: s3 X
16:22:02.140601 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 1841, offset 0, flags [DF], proto ICMP (1), length 84)# g7 Z6 p& b7 o8 r
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1462, length 64! |2 N& h4 M& |, w* X$ q
16:22:03.140606 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 2688, offset 0, flags [DF], proto ICMP (1), length 84)
+ a9 {3 ~. h! f/ C" x' V# S    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1463, length 64$ ^0 q! ]0 N& [* J: M$ G8 _3 v8 I
16:22:04.140584 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 3273, offset 0, flags [DF], proto ICMP (1), length 84)
( f# }8 N; r+ k) C( G    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1464, length 64
: Q4 {6 K: Y" N5 }9 A9 y4 T16:22:05.140544 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 3297, offset 0, flags [DF], proto ICMP (1), length 84)1 ^9 t* a+ x" r. r: I
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1465, length 64
% H' q) b. m. i' z/ K' x16:22:06.140605 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 3547, offset 0, flags [DF], proto ICMP (1), length 84)
 楼主| 发表于 2018-12-24 18:49:19 | 显示全部楼层
sudo tcpdump  -i  tapa72cc152-ce -w 43.240.248.70.cap
您需要登录后才可以回帖 登录 | 开始注册

本版积分规则

关闭

站长推荐上一条 /4 下一条

如有购买积分卡请联系497906712

QQ|返回首页|Archiver|手机版|小黑屋|易陆发现 点击这里给我发消息

GMT+8, 2022-10-4 05:23 , Processed in 0.041550 second(s), 21 queries .

Powered by LR.LINUX.cloud bbs168x X3.2 Licensed

© 2012-2022 Comsenz Inc.

快速回复 返回顶部 返回列表