Displaying 20 results from an estimated 76 matches for "ethertype".
2010 Jun 25
1
No connection in DomUs with network-route
...0 packets captured
0 packets received by filter
0 packets dropped by kernel
mw-xen:~# tcpdump -evvnni tap6.0
tcpdump: WARNING: tap6.0: no IPv4 address assigned
tcpdump: listening on tap6.0, link-type EN10MB (Ethernet), capture size 96 bytes
02:54:08.808121 00:16:3e:2c:96:5d > ff:ff:ff:ff:ff:ff, ethertype ARP
(0x0806), length 60: arp who-has 192.168.100.2 tell 192.168.100.1
02:54:09.808058 00:16:3e:2c:96:5d > ff:ff:ff:ff:ff:ff, ethertype ARP
(0x0806), length 60: arp who-has 192.168.100.2 tell 192.168.100.1
02:54:10.810233 00:16:3e:2c:96:5d > ff:ff:ff:ff:ff:ff, ethertype ARP
(0x0806), length 60...
2004 Sep 15
0
No Domain Controller, Please help to interpret tcpdump
...ease help me to interpret the following tcpdump and
tell me where/how/when WXP is searching for the domain controller and why
it failed? Or if someone can suggest a better way to debug this issue?
Thank you a bunch!!!
--- Kang Sun
11:33:40.776223 00:0c:29:0a:fa:0b > 00:50:2c:04:14:e8, ethertype IPv4
(0x0800), length 97: IP (tos 0x0, ttl 128, id 374, offset 0, flags [none],
proto 17, length: 83) 10.50.21.62.1026 > 10.50.30.32.domain: 33+[|domain]
11:33:40.776792 00:50:2c:04:14:e8 > 00:0c:29:0a:fa:0b, ethertype IPv4
(0x0800), length 97: IP (tos 0x0, ttl 64, id 147, offset 0, flag...
2005 May 30
2
Proxy ARP working from Internet but not from fw and loc
....19.34.96/27
dmz - 10.0.10.0/24
There are different server on the DMZ via proxy arp and the all respond the
same.
One of the servers are 194.19.34.115.
If I ping this from "loc", tcpdump on the firewall gives response like this:
13:50:25.613750 00:0f:3d:eb:d8:a9 > 00:0d:60:33:f9:da, ethertype IPv4
(0x0800), length 74: IP (tos 0x0, ttl 127, id 23932, offset 0, flags [none],
proto 1, length: 60) 10.0.0.50 > 194.19.34.115: icmp 40: echo request seq
13824
No reply
tcpdump on 115 shows:
13:45:16.266643 00:0f:3d:eb:d8:a9 > 00:0d:60:33:f9:da, ethertype IPv4
(0x0800), length 74: IP (tos...
2007 Apr 18
1
[Bridge] Unexpected bridge behavior (Bug? You decide.)
...eth2
$ sudo tcpdump -n -e -i eth0 port 3074
tcpdump: WARNING: eth0: no IPv4 address assigned
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on eth0, link-type EN10MB (Ethernet), capture size 96 bytes
19:28:27.715755 00:50:f2:f1:fb:07 > ff:ff:ff:ff:ff:ff, ethertype IPv4 (0x0800), length 102: IP 0.0.0.1.3074 > 255.255.255.255.3074: UDP, length: 60
### line above appears to be xbox 1 broadcasting to find other hosts
19:28:28.772223 00:50:f2:ba:39:89 > ff:ff:ff:ff:ff:ff, ethertype IPv4 (0x0800), length 102: IP 66.92.162.116.3074 > 255.255.255.255.3074:...
2020 May 18
2
ether-wake
...as a UDP
<https://en.m.wikipedia.org/wiki/User_Datagram_Protocol> datagram
<https://en.m.wikipedia.org/wiki/Datagram> to port
<https://en.m.wikipedia.org/wiki/TCP_and_UDP_port> 0,]
<https://en.m.wikipedia.org/wiki/Wake-on-LAN#cite_note-6> 7 or 9, or
directly over Ethernet as EtherType
<https://en.m.wikipedia.org/wiki/EtherType> 0x0842
- from Wikipedia
On Sun, May 17, 2020, 6:46 PM R C <cjvijf at gmail.com> wrote:
> Hello,
>
>
> what port does ether-wake use? (I believe it is port 9? but not sure).
>
>
> Ron
>
> _________________________...
2016 Feb 13
2
Tinc Router Mode - PING RESULT is destination host unreachable
Hi Lars,
I have no experience to use tcpdump, here is the output from TCPdump for
your reference. Any idea?
Use my home PC to ping company PC
01:00:25.154706 ethertype IPv4, IP 192.168.1.2 > 10.0.0.2: ICMP echo
request, id 1, seq 17, length 40
01:00:25.154706 IP 192.168.1.2 > 10.0.0.2: ICMP echo request, id 1, seq 17,
length 40
01:00:25.154706 IP 192.168.1.2 > 10.0.0.2: ICMP echo request, id 1, seq 17,
length 40
01:00:25.155177 IP 192.168.1.1 > 192.16...
2007 Oct 11
0
SK-9E21D + vlan + ifb
Hello!
Scenario: kernel 2.6.22.9, SysKonnect SK-9E21D, vlan, redirecting for
packets arriving on than vlan to ifb.
Using tcpdump on ifb iinterface I see the following:
03:30:17.322484 5a:71:6f:15:00:17 > 00:00:5a:71:00:00, ethertype Unknown
(0xcb69), length 1522:
0x0000: 2000 0800 4500 05dc 3a2f 4000 3c06 d868 ....E...:/@.<..h
0x0010: c299 9143 c3e6 0ec1 0050 0f2a e2c1 ce38 ...C.....P.*...8
0x0020: 792b a65c 5010 1a6d 6d13 0000 9b44 5dd1 y+.\P..mm....D].
0x0030: e3b3 771e def5 bd61 19...
2006 Sep 21
1
RE: Doubts regarding classifiers available
Hi Krishna,
1) If you want to classify according to MAC address, you could use iptables to mark the packet (using MARK target), but just source MAC is available for now.
2) Usually tc just could classify by fields of IP layer and its sublayer, so I think classify by ethertype is unavailable.
3) VLAN tag belongs to MAC layer! I''m not sure how to QoS for VLAN, can anybody give some advice?
Bests,
Yongle Lai
Hi,
I am a newbie working on tc tool, i want to know whether we have the following classifiers available
(1) source MAC address.
(2) destination MAC a...
2008 Mar 31
3
arp who-has packets not seen in Dom0 even by tcpdump
...add static arp entry at the router, but
i really need to get arp-who has working!
Linux-running router has vlan interface named breeze. I run
"arping 10.5.5.1 -i breeze" and "tcpdump -nn -i breeze port \! 22 -e" shows:
16:31:03.725312 00:16:76:c5:a3:14 > ff:ff:ff:ff:ff:ff, ethertype ARP
(0x0806), length 42: arp who-has 10.5.5.1 tell 10.5.5.254
16:31:04.729177 00:16:76:c5:a3:14 > ff:ff:ff:ff:ff:ff, ethertype ARP
(0x0806), length 42: arp who-has 10.5.5.1 tell 10.5.5.254
tcpdump on xen server shows nothing. If i plug the same cable from xen
server into any other server - i...
2010 Feb 04
5
Can I pass 802.1q (VLAN tagged) through a VPN Tinc in HUB/Switch mode?.
Hello to everybody,
Sorry if my english isn?t very good.
I need pass 802.1q through a VPN between two offices.
I have mounted a WRT54GL, with OpenWRT firmware, conected to a switch trunk
port in both offices.
In the switch of the first office I have created five tagged VLANs and I
need pass these VLAN to the second offices where it has created it too.
Can I do this with Tinc in HUB/Switch
2008 Mar 31
4
Packet corruption in re0
...ets on transmit when vlanhwtag
> > is enabled. From the tcpdump output it looks like a padding or
> > packet length issue.
> >
> > Here's what tcpdump on the re(4) device thinks it's transmitting:
> >
> > 00:08:a1:3c:32:9c > 00:90:fb:0c:89:7d, ethertype 802.1Q (0x8100), length
> 1510: vlan 1000, p 0, ethertype IPv4, 196.22.138.92 > 196.22.138.89: OSPFv2,
> Database Description, length: 1472
> >
> > Here's what was actually recieved by the em(4) device on the
> > neighbour. Note the absense of the 801.1Q header...
2005 Apr 22
4
I have a problem similar to FAQ 2 scenario, but reply packets don''t seem to be recognized.
...e return packet that would somehow
result in it seemingly be unrecognized as a proper response.
TCPDUMP results:
dale:~ # tcpdump -eni eth0 port 443 -vvvv -xx
tcpdump: listening on eth0, link-type EN10MB (Ethernet), capture size 96
bytes
09:07:03.606045 00:11:43:fd:4d:ca > 00:00:f4:c3:9d:ac, ethertype IPv4
(0x0800), length 74: IP (tos 0x0, ttl 64, id 46520, offset 0, flags [DF],
length: 60) 192.168.0.150.35238 > 65.40.217.150.443: S [tcp sum ok]
353484362:353484362(0) win 5840 <mss 1460,sackOK,timestamp 3624012786
0,nop,wscale 2>
0x0000: 0000 f4c3 9dac 0011 43fd 4dca 0800 4500...
2007 Apr 18
2
[Bridge] aoe/vblade on "localhost"
hello !
i try to use a network technology on one single host, which wasn`t designed for that.
to give a short overview of what i`m talking about:
AoE is just like a "networked blockdevice" (just like nbd/enbd) - but without tcp/ip.
AoE kernel driver is the "client end" (see this like an iSCSI initiator) - and an etherblade storage appliance is the "server end"
2012 Jul 31
11
A lot of kernel martian source messages in /var/log/messages
Hi all:
I see a lot of the errors below in /var/log/messages on my firewall:
Aug 1 00:47:44 munin kernel: [109008.257109] martian source 192.168.1.5 from 127.0.0.1, on dev eth1
Aug 1 00:48:44 munin kernel: [109068.257384] martian source 192.168.1.5 from 127.0.0.1, on dev eth1
Aug 1 00:49:44 munin kernel: [109128.257509] martian source 192.168.1.5 from 127.0.0.1, on dev eth1
Aug 1 00:50:44
2004 Jul 19
11
(no subject)
Hi
I want to block the IP traffic between any 2 hosts on a switched ethernet
LAN. Will setting all the possible IP addresses on a linux machine in the
LAN do the trick or there is another easier solution?
--
Anton Glinkov
network administrator
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO:
2016 Feb 12
4
Tinc Router Mode - PING RESULT is destination host unreachable
Hi All,
I am trying to setup the site-to-site VPN with TINC for connect my home
network to company network. Here is the IP allocation and configuration for
your reference.
Home PC (192.168.1.2) ?-----? Home (OPENWRT Router, 192.168.1.1, 10.0.0.1)
?----------------? INTERNET ?-------------? COMPANY (Windows 7
PC,192.168.2.1, 10.0.0.2) ?------------? COMPANY (SERVER ZONE) ?----? SERVER
A
2005 Aug 18
3
Tools can capture Q-in-Q VLAN packets?
Hi all,
I''m developing Q-in-Q VLAN feature for a router
software.
Does any open source tools have capacity of capturing
and displaying Q-in-Q
VLAN packet?
Thanks & Regards,
Hung
____________________________________________________
Start your day with Yahoo! - make it your home page
http://www.yahoo.com/r/hs
2015 Jun 11
2
Packet size issue with direct UDP connections
...than 297 bytes. In this case ICMP pings are an example, but we see the same behavior with other services.
Doing packet dumps on the VPN interfaces, we see that the pings >297 from direct connections do indeed arrive at the destination, but are dropped by the destination tinc interface as "ethertype unknown". Again, forwarded connections show no issues at all. If directly connected public endpoints are reconfigured to instead forward through other endpoints, they exhibit no issues with packet sizes. There are no errors reported related to this we can identify at any debug level.
Exami...
2008 Jun 18
6
Please advise: sending out bogus gratuitous ARP packet from vna
I''ve implemented code to send out bogus gratuitous ARP packet from vna
in order to fix CR 6701114. The webrev is at:
http://jurassic.eng/net/consulte.prc/export/build/xvm-6701114/webrev
Some backgroud information (see CR 6701114 for more detail):
During live migration of an xVM domain from one dom0 to another, the
VNIC will be moved from one switch port to another. But, the
2007 Jan 18
9
Problem with VLANs on tg3 NICs
...s are going out tagged ok. But, on ingress in dom0, the tg3
driver is stripping the vlan tag:
I''m not sure I trust tcpdump 100% but it seems to support that the arp
request is going out tagged, but the response is coming back untagged:
09:41:43.126497 00:16:3e:5a:4e:d8 > Broadcast, ethertype 802.1Q
(0x8100), length 46: vlan 4002, p 0, ethertype ARP, arp who-has
10.21.1.1 tell 10.21.1.99
0x0000: 0fa2 0806 0001 0800 0604 0001 0016 3e5a ..............>Z
0x0010: 4ed8 0a15 0163 0000 0000 0000 0a15 0101 N....c..........
09:41:43.126591 00:0e:aa:04:00:01 > 00:16:3e...