将设为首页浏览此站
开启辅助访问 天气与日历 收藏本站联系我们切换到窄版

易陆发现论坛

 找回密码
 开始注册
查看: 3323|回复: 7
收起左侧

tcpdump 抓包

[复制链接]
发表于 2018-12-12 20:02:59 | 显示全部楼层 |阅读模式

马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。

您需要 登录 才可以下载或查看,没有帐号?开始注册

x
sudo tcpdump -i bond1.104 -v -vv -t   
3 M' z; z. T9 k: d0 D; \, E1 {6 d  g' H! B6 ~7 C
$ Y" m8 g+ K" z+ l( `
sudo tcpdump -i ens1f0 -vv -w /tmp/ens1f0.cap     抓包写如文件中
# d$ a* o3 ?' r4 o# v0 ]$ g2 X* c
 楼主| 发表于 2018-12-13 15:01:49 | 显示全部楼层
sudo tcpdump -i bond1.104 -vvv -t # K7 p  _$ [  V- X$ v0 L
tcpdump: WARNING: bond1.104: no IPv4 address assigned
* F; }: ]" w9 l6 R) ~tcpdump: listening on bond1.104, link-type EN10MB (Ethernet), capture size 65535 bytes/ W0 x* }2 T" a5 S  y9 Z! l
IP (tos 0x0, ttl 64, id 18437, offset 0, flags [DF], proto ICMP (1), length 84)) }8 h3 F6 `: j, F
    CD--6 > 10.64.35.100: ICMP echo request, id 7024, seq 437, length 64
, q+ s% q9 w  DIP (tos 0x0, ttl 64, id 18437, offset 0, flags [DF], proto ICMP (1), length 84): h  i) y" x, E/ Q( I5 q0 R
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 437, length 646 }: C, S0 B! C
IP (tos 0x0, ttl 64, id 18696, offset 0, flags [DF], proto ICMP (1), length 84)
9 ]+ W! F9 w, U: J+ [' h0 |    CD--6 > 10.4.5.100: ICMP echo request, id 7024, seq 438, length 64
5 l( u. l/ x' W0 @. NIP (tos 0x0, ttl 64, id 18696, offset 0, flags [DF], proto ICMP (1), length 84): C5 r. B# R0 ~. }# ]
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 438, length 64
/ C. C1 ^$ w+ p1 S8 C, b) {IP (tos 0x0, ttl 64, id 18958, offset 0, flags [DF], proto ICMP (1), length 84)
6 ^, I+ J: I+ J- r3 D    CD--6 > 10.4.5.100: ICMP echo request, id 7024, seq 439, length 64
, j! V9 d) H5 S3 g* Z- |& _& f6 m8 hIP (tos 0x0, ttl 64, id 18958, offset 0, flags [DF], proto ICMP (1), length 84), I* d7 I/ c8 c* K2 }4 n7 ?- S
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 439, length 64& B0 _; K) k9 H+ y8 N
IP (tos 0x0, ttl 64, id 19338, offset 0, flags [DF], proto ICMP (1), length 84)
9 |6 n  o( ]  g1 G9 @    CD--6 > 10.64.35.100: ICMP echo request, id 7024, seq 440, length 642 K. P, ], ~( ]$ a
IP (tos 0x0, ttl 64, id 19338, offset 0, flags [DF], proto ICMP (1), length 84)4 R# Q' {9 O. z) l% w
    10.4.5.100 > CD--6: ICMP echo reply, id 7024, seq 440, length 64
发表于 2018-12-14 18:13:01 | 显示全部楼层
sudo tcpdump -i bond1 -vv -e icmp  抓取ICMP包。
发表于 2018-12-14 18:15:28 | 显示全部楼层
sudo  tcpdump -i vnet7 -vv -e icmp   抓取vnet7子接口地址
 楼主| 发表于 2018-12-24 16:20:40 | 显示全部楼层
sudo tcpdump -i bond1 -vv icmp  6 c1 C' j1 x* q+ \) r1 ^/ U
tcpdump: WARNING: bond1: no IPv4 address assigned
4 |( I; d& ]9 s4 O' X5 _tcpdump: listening on bond1, link-type EN10MB (Ethernet), capture size 65535 bytes2 R/ M  G8 i9 ]6 S
16:16:57.141135 IP (tos 0x0, ttl 62, id 52282, offset 0, flags [DF], proto ICMP (1), length 84)
1 ?& C0 b; L; Z9 D2 r  P    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1157, length 642 S0 G2 l3 u) Z* k/ J5 r8 H
16:16:58.141200 IP (tos 0x0, ttl 62, id 52414, offset 0, flags [DF], proto ICMP (1), length 84)
4 z9 [2 {$ Q; x8 Y0 V+ d& ?% m9 O    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1158, length 64
7 v" J7 `  L. F6 [16:16:59.141214 IP (tos 0x0, ttl 62, id 53243, offset 0, flags [DF], proto ICMP (1), length 84)0 t) L1 b1 W% \$ F  `
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1159, length 64
' T. X0 F/ z" i6 ~2 U) X6 b* ^" j16:17:00.141085 IP (tos 0x0, ttl 62, id 53622, offset 0, flags [DF], proto ICMP (1), length 84)
& ~* M" G! D. s* B3 B    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1160, length 64
 楼主| 发表于 2018-12-24 16:22:16 | 显示全部楼层
sudo tcpdump -i bond1 -vv -e icmp  
4 X: g, m3 N" n% D. h9 {* Z# l+ Gtcpdump: WARNING: bond1: no IPv4 address assigned1 H& w8 Z& R+ Z
tcpdump: listening on bond1, link-type EN10MB (Ethernet), capture size 65535 bytes
( S! o4 f/ `  i. I3 K- O/ y4 D: U16:21:23.140673 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 47732, offset 0, flags [DF], proto ICMP (1), length 84)& q: N- x7 G0 l
% j1 s0 w" i, n& N; a) E! b
) W5 w; a6 \2 b  z) z) P3 l
, ^6 n9 h# N9 D- B0 }9 W
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1423, length 649 v# Z) n3 y3 u" T6 d5 e8 {; e
16:21:24.140663 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 47779, offset 0, flags [DF], proto ICMP (1), length 84)) y( P, S/ o( D2 u. F! R6 ?1 T
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1424, length 642 S# M4 a7 r) h
16:21:25.140651 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 48122, offset 0, flags [DF], proto ICMP (1), length 84)' W7 o6 j( U& K2 K1 P4 h+ t
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1425, length 64
( @* C. t8 A1 b! r" l% S16:21:26.140629 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 48938, offset 0, flags [DF], proto ICMP (1), length 84)( W. z% @7 s% W/ A& R. U
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1426, length 64
- A0 n; e# j) g4 z/ a/ z16:21:27.140613 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 49679, offset 0, flags [DF], proto ICMP (1), length 84)
) R) z/ C4 D8 p: U- ^- V3 U- ^    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1427, length 64
/ B) r+ q- o. k% m16:21:28.140616 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 50377, offset 0, flags [DF], proto ICMP (1), length 84), [' q- H9 B/ K9 V6 b
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1428, length 64
; @/ n: u- n( A; q16:21:29.140633 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 50603, offset 0, flags [DF], proto ICMP (1), length 84)
) ?( O% ~% W& f1 G- M    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1429, length 64" ^) z0 p( B! \2 ~
16:21:30.140614 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 51285, offset 0, flags [DF], proto ICMP (1), length 84)
 楼主| 发表于 2018-12-24 16:22:34 | 显示全部楼层
sudo tcpdump -i bond1 -vvv -e icmp  7 V! K. F9 s3 I1 ]: L% ?
tcpdump: WARNING: bond1: no IPv4 address assigned, M: R! {- B9 p3 [, f, j+ M0 y* l
tcpdump: listening on bond1, link-type EN10MB (Ethernet), capture size 65535 bytes
5 F7 E( l* n& v1 N- k- A16:22:01.140593 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 1576, offset 0, flags [DF], proto ICMP (1), length 84)
7 Q3 g+ g" s- y! ]+ a! r8 R    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1461, length 64
, K; z( H$ v6 y  ^8 i! w2 Y) M  r16:22:02.140601 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 1841, offset 0, flags [DF], proto ICMP (1), length 84)
+ y5 @+ o  A( ]* z: ?4 D% q) U! P    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1462, length 64
3 ^' A" e) ?' h/ b4 P: J+ r16:22:03.140606 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 2688, offset 0, flags [DF], proto ICMP (1), length 84)
/ N0 W( e7 i3 D7 x2 Z) X5 B+ _, ~    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1463, length 64* o% A  C3 I. c  J% }
16:22:04.140584 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 3273, offset 0, flags [DF], proto ICMP (1), length 84)$ X+ `" k7 z) `
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1464, length 64
& ^) q5 D' |5 J0 o16:22:05.140544 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 3297, offset 0, flags [DF], proto ICMP (1), length 84)+ ~8 Y& {* R3 ]) J. f( T6 K
    10.32.69.236 > 43.240.248.70: ICMP echo request, id 16362, seq 1465, length 640 g0 p( j! r) j" Q! Y1 J/ A
16:22:06.140605 00:0e:1e:b3:98:20 (oui Unknown) > 00:00:5e:00:01:65 (oui Unknown), ethertype 802.1Q (0x8100), length 102: vlan 205, p 0, ethertype IPv4, (tos 0x0, ttl 62, id 3547, offset 0, flags [DF], proto ICMP (1), length 84)
 楼主| 发表于 2018-12-24 18:49:19 | 显示全部楼层
sudo tcpdump  -i  tapa72cc152-ce -w 43.240.248.70.cap
您需要登录后才可以回帖 登录 | 开始注册

本版积分规则

关闭

站长推荐上一条 /4 下一条

如有购买积分卡请联系497906712

QQ|返回首页|Archiver|手机版|小黑屋|易陆发现 点击这里给我发消息

GMT+8, 2021-4-13 08:47 , Processed in 0.059733 second(s), 22 queries .

Powered by 龙睿 bbs168x X3.2

© 2001-2020 Comsenz Inc.

快速回复 返回顶部 返回列表