Ping Übersichtsprotokoll
No. Time Source Destination Protocol Info 1 0.000000 10.64.106.150 10.64.106.254 ICMP Echo (ping) request 2 0.010154 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply 3 1.003234 10.64.106.150 10.64.106.254 ICMP Echo (ping) request 4 1.003635 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply 5 2.003293 10.64.106.150 10.64.106.254 ICMP Echo (ping) request 6 2.003747 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply 7 4.994528 10.64.106.254 10.64.106.150 ARP Who has 10.64.106.150? Tell 10.64.106.254 8 4.994631 10.64.106.150 10.64.106.254 ARP 10.64.106.150 is at 00:0c:29:18:f2:80 9 7.729946 10.64.106.150 10.64.106.253 DNS Standard query A lugdh1-rtg.lugdh1 10 7.734451 10.64.106.253 10.64.106.150 DNS Standard query response A 10.64.106.254 11 7.748323 10.64.106.150 10.64.106.254 ICMP Echo (ping) request 12 7.748928 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply 13 7.750372 10.64.106.150 10.64.106.253 DNS Standard query PTR 254.106.64.10.in-addr.arpa 14 7.752242 10.64.106.253 10.64.106.150 DNS Standard query response PTR lugdh1-rtg.lugdh1 15 8.755076 10.64.106.150 10.64.106.254 ICMP Echo (ping) request 16 8.755818 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply 17 8.764462 10.64.106.150 10.64.106.253 DNS Standard query PTR 254.106.64.10.in-addr.arpa 18 8.766758 10.64.106.253 10.64.106.150 DNS Standard query response PTR lugdh1-rtg.lugdh1 19 9.759139 10.64.106.150 10.64.106.254 ICMP Echo (ping) request 20 9.769362 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply 21 9.771144 10.64.106.150 10.64.106.253 DNS Standard query PTR 254.106.64.10.in-addr.arpa 22 9.772041 10.64.106.253 10.64.106.150 DNS Standard query response PTR lugdh1-rtg.lugdh1 23 12.727303 10.64.106.150 lugdh1-dns.lugdh1 ARP Who has 10.64.106.253? Tell 10.64.106.150 24 12.729623 lugdh1-dns.lugdh1 10.64.106.150 ARP 10.64.106.253 is at 00:0c:29:e0:47:cd
Ping Detailprotokoll
No. Time Source Destination Protocol Info
1 0.000000 10.64.106.150 10.64.106.254 ICMP Echo (ping) request
Frame 1 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:14.425779000 Time delta from previous packet: 0.000000000 seconds Time since reference or first frame: 0.000000000 seconds Frame Number: 1 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.254 (10.64.106.254)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x0000 (0) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x5095 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.254 (10.64.106.254)
Internet Control Message Protocol
Type: 8 (Echo (ping) request) Code: 0 Checksum: 0x5f9d (correct) Identifier: 0xbc08 Sequence number: 0x0001 Data (56 bytes) 0000 22 92 e7 44 e1 7e 06 00 08 09 0a 0b 0c 0d 0e 0f "..D.~.......... 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
2 0.010154 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply
Frame 2 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:14.435933000 Time delta from previous packet: 0.010154000 seconds Time since reference or first frame: 0.010154000 seconds Frame Number: 2 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.254 (10.64.106.254), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x7746 (30534) Flags: 0x00 0... = Reserved bit: Not set .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x194f (correct) Source: 10.64.106.254 (10.64.106.254) Destination: 10.64.106.150 (10.64.106.150)
Internet Control Message Protocol
Type: 0 (Echo (ping) reply) Code: 0 Checksum: 0x679d (correct) Identifier: 0xbc08 Sequence number: 0x0001 Data (56 bytes) 0000 22 92 e7 44 e1 7e 06 00 08 09 0a 0b 0c 0d 0e 0f "..D.~.......... 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
3 1.003234 10.64.106.150 10.64.106.254 ICMP Echo (ping) request
Frame 3 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:15.429013000 Time delta from previous packet: 0.993080000 seconds Time since reference or first frame: 1.003234000 seconds Frame Number: 3 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.254 (10.64.106.254)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x0001 (1) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x5094 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.254 (10.64.106.254)
Internet Control Message Protocol
Type: 8 (Echo (ping) request) Code: 0 Checksum: 0xaf8f (correct) Identifier: 0xbc08 Sequence number: 0x0002 Data (56 bytes) 0000 23 92 e7 44 90 8b 06 00 08 09 0a 0b 0c 0d 0e 0f #..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
4 1.003635 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply
Frame 4 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:15.429414000 Time delta from previous packet: 0.000401000 seconds Time since reference or first frame: 1.003635000 seconds Frame Number: 4 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.254 (10.64.106.254), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x7747 (30535) Flags: 0x00 0... = Reserved bit: Not set .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x194e (correct) Source: 10.64.106.254 (10.64.106.254) Destination: 10.64.106.150 (10.64.106.150)
Internet Control Message Protocol
Type: 0 (Echo (ping) reply) Code: 0 Checksum: 0xb78f (correct) Identifier: 0xbc08 Sequence number: 0x0002 Data (56 bytes) 0000 23 92 e7 44 90 8b 06 00 08 09 0a 0b 0c 0d 0e 0f #..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
5 2.003293 10.64.106.150 10.64.106.254 ICMP Echo (ping) request
Frame 5 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:16.429072000 Time delta from previous packet: 0.999658000 seconds Time since reference or first frame: 2.003293000 seconds Frame Number: 5 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.254 (10.64.106.254)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x0002 (2) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x5093 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.254 (10.64.106.254)
Internet Control Message Protocol
Type: 8 (Echo (ping) request) Code: 0 Checksum: 0x6a8e (correct) Identifier: 0xbc08 Sequence number: 0x0003 Data (56 bytes) 0000 24 92 e7 44 d4 8b 06 00 08 09 0a 0b 0c 0d 0e 0f $..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
6 2.003747 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply
Frame 6 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:16.429526000 Time delta from previous packet: 0.000454000 seconds Time since reference or first frame: 2.003747000 seconds Frame Number: 6 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.254 (10.64.106.254), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x7748 (30536) Flags: 0x00 0... = Reserved bit: Not set .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x194d (correct) Source: 10.64.106.254 (10.64.106.254) Destination: 10.64.106.150 (10.64.106.150)
Internet Control Message Protocol
Type: 0 (Echo (ping) reply) Code: 0 Checksum: 0x728e (correct) Identifier: 0xbc08 Sequence number: 0x0003 Data (56 bytes) 0000 24 92 e7 44 d4 8b 06 00 08 09 0a 0b 0c 0d 0e 0f $..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
7 4.994528 10.64.106.254 10.64.106.150 ARP Who has 10.64.106.150? Tell 10.64.106.254
Frame 7 (60 bytes on wire, 60 bytes captured)
Arrival Time: Aug 20, 2006 00:35:19.420307000 Time delta from previous packet: 2.990781000 seconds Time since reference or first frame: 4.994528000 seconds Frame Number: 7 Packet Length: 60 bytes Capture Length: 60 bytes Protocols in frame: eth:arp
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: ARP (0x0806) Trailer: 000000000000000000000000000000000000
Address Resolution Protocol (request)
Hardware type: Ethernet (0x0001) Protocol type: IP (0x0800) Hardware size: 6 Protocol size: 4 Opcode: request (0x0001) Sender MAC address: 00:0c:29:e6:55:40 (10.64.106.254) Sender IP address: 10.64.106.254 (10.64.106.254) Target MAC address: 00:00:00:00:00:00 (00:00:00_00:00:00) Target IP address: 10.64.106.150 (10.64.106.150)
No. Time Source Destination Protocol Info
8 4.994631 10.64.106.150 10.64.106.254 ARP 10.64.106.150 is at 00:0c:29:18:f2:80
Frame 8 (42 bytes on wire, 42 bytes captured)
Arrival Time: Aug 20, 2006 00:35:19.420410000 Time delta from previous packet: 0.000103000 seconds Time since reference or first frame: 4.994631000 seconds Frame Number: 8 Packet Length: 42 bytes Capture Length: 42 bytes Protocols in frame: eth:arp
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: ARP (0x0806)
Address Resolution Protocol (reply)
Hardware type: Ethernet (0x0001) Protocol type: IP (0x0800) Hardware size: 6 Protocol size: 4 Opcode: reply (0x0002) Sender MAC address: 00:0c:29:18:f2:80 (10.64.106.150) Sender IP address: 10.64.106.150 (10.64.106.150) Target MAC address: 00:0c:29:e6:55:40 (10.64.106.254) Target IP address: 10.64.106.254 (10.64.106.254)
No. Time Source Destination Protocol Info
9 7.729946 10.64.106.150 10.64.106.253 DNS Standard query A lugdh1-rtg.lugdh1
Frame 9 (77 bytes on wire, 77 bytes captured)
Arrival Time: Aug 20, 2006 00:35:22.155725000 Time delta from previous packet: 2.735315000 seconds Time since reference or first frame: 7.729946000 seconds Frame Number: 9 Packet Length: 77 bytes Capture Length: 77 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e0:47:cd
Destination: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.253 (10.64.106.253)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 63 Identification: 0x6c24 (27684) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0xe476 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.253 (10.64.106.253)
User Datagram Protocol, Src Port: 1024 (1024), Dst Port: domain (53)
Source port: 1024 (1024) Destination port: domain (53) Length: 43 Checksum: 0x47c4 (correct)
Domain Name System (query)
Transaction ID: 0x9b9b Flags: 0x0100 (Standard query) 0... .... .... .... = Response: Message is a query .000 0... .... .... = Opcode: Standard query (0) .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... .0.. .... = Z: reserved (0) .... .... ...0 .... = Non-authenticated data OK: Non-authenticated data is unacceptable Questions: 1 Answer RRs: 0 Authority RRs: 0 Additional RRs: 0 Queries lugdh1-rtg.lugdh1: type A, class IN Name: lugdh1-rtg.lugdh1 Type: A (Host address) Class: IN (0x0001)
No. Time Source Destination Protocol Info
10 7.734451 10.64.106.253 10.64.106.150 DNS Standard query response A 10.64.106.254
Frame 10 (134 bytes on wire, 134 bytes captured)
Arrival Time: Aug 20, 2006 00:35:22.160230000 Time delta from previous packet: 0.004505000 seconds Time since reference or first frame: 7.734451000 seconds Frame Number: 10 Packet Length: 134 bytes Capture Length: 134 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:e0:47:cd, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.253 (10.64.106.253), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 120 Identification: 0x000c (12) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0x5056 (correct) Source: 10.64.106.253 (10.64.106.253) Destination: 10.64.106.150 (10.64.106.150)
User Datagram Protocol, Src Port: domain (53), Dst Port: 1024 (1024)
Source port: domain (53) Destination port: 1024 (1024) Length: 100 Checksum: 0x2f53 (correct)
Domain Name System (response)
Transaction ID: 0x9b9b Flags: 0x8580 (Standard query response, No error) 1... .... .... .... = Response: Message is a response .000 0... .... .... = Opcode: Standard query (0) .... .1.. .... .... = Authoritative: Server is an authority for domain .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... 1... .... = Recursion available: Server can do recursive queries .... .... .0.. .... = Z: reserved (0) .... .... ..0. .... = Answer authenticated: Answer/authority portion was not authenticated by the server .... .... .... 0000 = Reply code: No error (0) Questions: 1 Answer RRs: 1 Authority RRs: 1 Additional RRs: 1 Queries lugdh1-rtg.lugdh1: type A, class IN Name: lugdh1-rtg.lugdh1 Type: A (Host address) Class: IN (0x0001) Answers lugdh1-rtg.lugdh1: type A, class IN, addr 10.64.106.254 Name: lugdh1-rtg.lugdh1 Type: A (Host address) Class: IN (0x0001) Time to live: 7 days Data length: 4 Addr: 10.64.106.254 Authoritative nameservers lugdh1: type NS, class IN, ns lugdh1-dns.lugdh1 Name: lugdh1 Type: NS (Authoritative name server) Class: IN (0x0001) Time to live: 7 days Data length: 13 Name server: lugdh1-dns.lugdh1 Additional records lugdh1-dns.lugdh1: type A, class IN, addr 10.64.106.253 Name: lugdh1-dns.lugdh1 Type: A (Host address) Class: IN (0x0001) Time to live: 7 days Data length: 4 Addr: 10.64.106.253
No. Time Source Destination Protocol Info
11 7.748323 10.64.106.150 10.64.106.254 ICMP Echo (ping) request
Frame 11 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:22.174102000 Time delta from previous packet: 0.013872000 seconds Time since reference or first frame: 7.748323000 seconds Frame Number: 11 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.254 (10.64.106.254)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x0000 (0) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x5095 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.254 (10.64.106.254)
Internet Control Message Protocol
Type: 8 (Echo (ping) request) Code: 0 Checksum: 0x6574 (correct) Identifier: 0xbd08 Sequence number: 0x0001 Data (56 bytes) 0000 2a 92 e7 44 d6 a7 02 00 08 09 0a 0b 0c 0d 0e 0f *..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
12 7.748928 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply
Frame 12 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:22.174707000 Time delta from previous packet: 0.000605000 seconds Time since reference or first frame: 7.748928000 seconds Frame Number: 12 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.254 (10.64.106.254), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x7749 (30537) Flags: 0x00 0... = Reserved bit: Not set .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x194c (correct) Source: 10.64.106.254 (10.64.106.254) Destination: 10.64.106.150 (10.64.106.150)
Internet Control Message Protocol
Type: 0 (Echo (ping) reply) Code: 0 Checksum: 0x6d74 (correct) Identifier: 0xbd08 Sequence number: 0x0001 Data (56 bytes) 0000 2a 92 e7 44 d6 a7 02 00 08 09 0a 0b 0c 0d 0e 0f *..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
13 7.750372 10.64.106.150 10.64.106.253 DNS Standard query PTR 254.106.64.10.in-addr.arpa
Frame 13 (86 bytes on wire, 86 bytes captured)
Arrival Time: Aug 20, 2006 00:35:22.176151000 Time delta from previous packet: 0.001444000 seconds Time since reference or first frame: 7.750372000 seconds Frame Number: 13 Packet Length: 86 bytes Capture Length: 86 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e0:47:cd
Destination: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.253 (10.64.106.253)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 72 Identification: 0x6c29 (27689) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0xe468 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.253 (10.64.106.253)
User Datagram Protocol, Src Port: 1024 (1024), Dst Port: domain (53)
Source port: 1024 (1024) Destination port: domain (53) Length: 52 Checksum: 0x8e1e (correct)
Domain Name System (query)
Transaction ID: 0x9b9c Flags: 0x0100 (Standard query) 0... .... .... .... = Response: Message is a query .000 0... .... .... = Opcode: Standard query (0) .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... .0.. .... = Z: reserved (0) .... .... ...0 .... = Non-authenticated data OK: Non-authenticated data is unacceptable Questions: 1 Answer RRs: 0 Authority RRs: 0 Additional RRs: 0 Queries 254.106.64.10.in-addr.arpa: type PTR, class IN Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001)
No. Time Source Destination Protocol Info
14 7.752242 10.64.106.253 10.64.106.150 DNS Standard query response PTR lugdh1-rtg.lugdh1
Frame 14 (158 bytes on wire, 158 bytes captured)
Arrival Time: Aug 20, 2006 00:35:22.178021000 Time delta from previous packet: 0.001870000 seconds Time since reference or first frame: 7.752242000 seconds Frame Number: 14 Packet Length: 158 bytes Capture Length: 158 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:e0:47:cd, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.253 (10.64.106.253), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 144 Identification: 0x000d (13) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0x503d (correct) Source: 10.64.106.253 (10.64.106.253) Destination: 10.64.106.150 (10.64.106.150)
User Datagram Protocol, Src Port: domain (53), Dst Port: 1024 (1024)
Source port: domain (53) Destination port: 1024 (1024) Length: 124 Checksum: 0x3116 (correct)
Domain Name System (response)
Transaction ID: 0x9b9c Flags: 0x8580 (Standard query response, No error) 1... .... .... .... = Response: Message is a response .000 0... .... .... = Opcode: Standard query (0) .... .1.. .... .... = Authoritative: Server is an authority for domain .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... 1... .... = Recursion available: Server can do recursive queries .... .... .0.. .... = Z: reserved (0) .... .... ..0. .... = Answer authenticated: Answer/authority portion was not authenticated by the server .... .... .... 0000 = Reply code: No error (0) Questions: 1 Answer RRs: 1 Authority RRs: 1 Additional RRs: 1 Queries 254.106.64.10.in-addr.arpa: type PTR, class IN Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001) Answers 254.106.64.10.in-addr.arpa: type PTR, class IN, lugdh1-rtg.lugdh1 Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001) Time to live: 7 days Data length: 19 Domain name: lugdh1-rtg.lugdh1 Authoritative nameservers 106.64.10.in-addr.arpa: type NS, class IN, ns lugdh1-dns.lugdh1 Name: 106.64.10.in-addr.arpa Type: NS (Authoritative name server) Class: IN (0x0001) Time to live: 7 days Data length: 13 Name server: lugdh1-dns.lugdh1 Additional records lugdh1-dns.lugdh1: type A, class IN, addr 10.64.106.253 Name: lugdh1-dns.lugdh1 Type: A (Host address) Class: IN (0x0001) Time to live: 7 days Data length: 4 Addr: 10.64.106.253
No. Time Source Destination Protocol Info
15 8.755076 10.64.106.150 10.64.106.254 ICMP Echo (ping) request
Frame 15 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:23.180855000 Time delta from previous packet: 1.002834000 seconds Time since reference or first frame: 8.755076000 seconds Frame Number: 15 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.254 (10.64.106.254)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x0001 (1) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x5094 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.254 (10.64.106.254)
Internet Control Message Protocol
Type: 8 (Echo (ping) request) Code: 0 Checksum: 0xfd58 (correct) Identifier: 0xbd08 Sequence number: 0x0002 Data (56 bytes) 0000 2b 92 e7 44 3d c2 02 00 08 09 0a 0b 0c 0d 0e 0f +..D=........... 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
16 8.755818 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply
Frame 16 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:23.181597000 Time delta from previous packet: 0.000742000 seconds Time since reference or first frame: 8.755818000 seconds Frame Number: 16 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.254 (10.64.106.254), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x774a (30538) Flags: 0x00 0... = Reserved bit: Not set .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x194b (correct) Source: 10.64.106.254 (10.64.106.254) Destination: 10.64.106.150 (10.64.106.150)
Internet Control Message Protocol
Type: 0 (Echo (ping) reply) Code: 0 Checksum: 0x0559 (correct) Identifier: 0xbd08 Sequence number: 0x0002 Data (56 bytes) 0000 2b 92 e7 44 3d c2 02 00 08 09 0a 0b 0c 0d 0e 0f +..D=........... 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
17 8.764462 10.64.106.150 10.64.106.253 DNS Standard query PTR 254.106.64.10.in-addr.arpa
Frame 17 (86 bytes on wire, 86 bytes captured)
Arrival Time: Aug 20, 2006 00:35:23.190241000 Time delta from previous packet: 0.008644000 seconds Time since reference or first frame: 8.764462000 seconds Frame Number: 17 Packet Length: 86 bytes Capture Length: 86 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e0:47:cd
Destination: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.253 (10.64.106.253)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 72 Identification: 0x6d27 (27943) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0xe36a (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.253 (10.64.106.253)
User Datagram Protocol, Src Port: 1024 (1024), Dst Port: domain (53)
Source port: 1024 (1024) Destination port: domain (53) Length: 52 Checksum: 0x8e1d (correct)
Domain Name System (query)
Transaction ID: 0x9b9d Flags: 0x0100 (Standard query) 0... .... .... .... = Response: Message is a query .000 0... .... .... = Opcode: Standard query (0) .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... .0.. .... = Z: reserved (0) .... .... ...0 .... = Non-authenticated data OK: Non-authenticated data is unacceptable Questions: 1 Answer RRs: 0 Authority RRs: 0 Additional RRs: 0 Queries 254.106.64.10.in-addr.arpa: type PTR, class IN Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001)
No. Time Source Destination Protocol Info
18 8.766758 10.64.106.253 10.64.106.150 DNS Standard query response PTR lugdh1-rtg.lugdh1
Frame 18 (158 bytes on wire, 158 bytes captured)
Arrival Time: Aug 20, 2006 00:35:23.192537000 Time delta from previous packet: 0.002296000 seconds Time since reference or first frame: 8.766758000 seconds Frame Number: 18 Packet Length: 158 bytes Capture Length: 158 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:e0:47:cd, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.253 (10.64.106.253), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 144 Identification: 0x000e (14) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0x503c (correct) Source: 10.64.106.253 (10.64.106.253) Destination: 10.64.106.150 (10.64.106.150)
User Datagram Protocol, Src Port: domain (53), Dst Port: 1024 (1024)
Source port: domain (53) Destination port: 1024 (1024) Length: 124 Checksum: 0x3115 (correct)
Domain Name System (response)
Transaction ID: 0x9b9d Flags: 0x8580 (Standard query response, No error) 1... .... .... .... = Response: Message is a response .000 0... .... .... = Opcode: Standard query (0) .... .1.. .... .... = Authoritative: Server is an authority for domain .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... 1... .... = Recursion available: Server can do recursive queries .... .... .0.. .... = Z: reserved (0) .... .... ..0. .... = Answer authenticated: Answer/authority portion was not authenticated by the server .... .... .... 0000 = Reply code: No error (0) Questions: 1 Answer RRs: 1 Authority RRs: 1 Additional RRs: 1 Queries 254.106.64.10.in-addr.arpa: type PTR, class IN Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001) Answers 254.106.64.10.in-addr.arpa: type PTR, class IN, lugdh1-rtg.lugdh1 Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001) Time to live: 7 days Data length: 19 Domain name: lugdh1-rtg.lugdh1 Authoritative nameservers 106.64.10.in-addr.arpa: type NS, class IN, ns lugdh1-dns.lugdh1 Name: 106.64.10.in-addr.arpa Type: NS (Authoritative name server) Class: IN (0x0001) Time to live: 7 days Data length: 13 Name server: lugdh1-dns.lugdh1 Additional records lugdh1-dns.lugdh1: type A, class IN, addr 10.64.106.253 Name: lugdh1-dns.lugdh1 Type: A (Host address) Class: IN (0x0001) Time to live: 7 days Data length: 4 Addr: 10.64.106.253
No. Time Source Destination Protocol Info
19 9.759139 10.64.106.150 10.64.106.254 ICMP Echo (ping) request
Frame 19 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:24.184918000 Time delta from previous packet: 0.992381000 seconds Time since reference or first frame: 9.759139000 seconds Frame Number: 19 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e6:55:40
Destination: 00:0c:29:e6:55:40 (10.64.106.254) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.254 (10.64.106.254)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x0002 (2) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x5093 (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.254 (10.64.106.254)
Internet Control Message Protocol
Type: 8 (Echo (ping) request) Code: 0 Checksum: 0x3d48 (correct) Identifier: 0xbd08 Sequence number: 0x0003 Data (56 bytes) 0000 2c 92 e7 44 fc d1 02 00 08 09 0a 0b 0c 0d 0e 0f ,..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
20 9.769362 10.64.106.254 10.64.106.150 ICMP Echo (ping) reply
Frame 20 (98 bytes on wire, 98 bytes captured)
Arrival Time: Aug 20, 2006 00:35:24.195141000 Time delta from previous packet: 0.010223000 seconds Time since reference or first frame: 9.769362000 seconds Frame Number: 20 Packet Length: 98 bytes Capture Length: 98 bytes Protocols in frame: eth:ip:icmp:data
Ethernet II, Src: 00:0c:29:e6:55:40, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e6:55:40 (10.64.106.254) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.254 (10.64.106.254), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 84 Identification: 0x774b (30539) Flags: 0x00 0... = Reserved bit: Not set .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: ICMP (0x01) Header checksum: 0x194a (correct) Source: 10.64.106.254 (10.64.106.254) Destination: 10.64.106.150 (10.64.106.150)
Internet Control Message Protocol
Type: 0 (Echo (ping) reply) Code: 0 Checksum: 0x4548 (correct) Identifier: 0xbd08 Sequence number: 0x0003 Data (56 bytes) 0000 2c 92 e7 44 fc d1 02 00 08 09 0a 0b 0c 0d 0e 0f ,..D............ 0010 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 0020 20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f !"#$%&'()*+,-./ 0030 30 31 32 33 34 35 36 37 01234567
No. Time Source Destination Protocol Info
21 9.771144 10.64.106.150 10.64.106.253 DNS Standard query PTR 254.106.64.10.in-addr.arpa
Frame 21 (86 bytes on wire, 86 bytes captured)
Arrival Time: Aug 20, 2006 00:35:24.196923000 Time delta from previous packet: 0.001782000 seconds Time since reference or first frame: 9.771144000 seconds Frame Number: 21 Packet Length: 86 bytes Capture Length: 86 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e0:47:cd
Destination: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.150 (10.64.106.150), Dst Addr: 10.64.106.253 (10.64.106.253)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 72 Identification: 0x6e23 (28195) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0xe26e (correct) Source: 10.64.106.150 (10.64.106.150) Destination: 10.64.106.253 (10.64.106.253)
User Datagram Protocol, Src Port: 1024 (1024), Dst Port: domain (53)
Source port: 1024 (1024) Destination port: domain (53) Length: 52 Checksum: 0x8e1c (correct)
Domain Name System (query)
Transaction ID: 0x9b9e Flags: 0x0100 (Standard query) 0... .... .... .... = Response: Message is a query .000 0... .... .... = Opcode: Standard query (0) .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... .0.. .... = Z: reserved (0) .... .... ...0 .... = Non-authenticated data OK: Non-authenticated data is unacceptable Questions: 1 Answer RRs: 0 Authority RRs: 0 Additional RRs: 0 Queries 254.106.64.10.in-addr.arpa: type PTR, class IN Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001)
No. Time Source Destination Protocol Info
22 9.772041 10.64.106.253 10.64.106.150 DNS Standard query response PTR lugdh1-rtg.lugdh1
Frame 22 (158 bytes on wire, 158 bytes captured)
Arrival Time: Aug 20, 2006 00:35:24.197820000 Time delta from previous packet: 0.000897000 seconds Time since reference or first frame: 9.772041000 seconds Frame Number: 22 Packet Length: 158 bytes Capture Length: 158 bytes Protocols in frame: eth:ip:udp:dns
Ethernet II, Src: 00:0c:29:e0:47:cd, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Type: IP (0x0800)
Internet Protocol, Src Addr: 10.64.106.253 (10.64.106.253), Dst Addr: 10.64.106.150 (10.64.106.150)
Version: 4 Header length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..0. = ECN-Capable Transport (ECT): 0 .... ...0 = ECN-CE: 0 Total Length: 144 Identification: 0x000f (15) Flags: 0x04 (Don't Fragment) 0... = Reserved bit: Not set .1.. = Don't fragment: Set ..0. = More fragments: Not set Fragment offset: 0 Time to live: 64 Protocol: UDP (0x11) Header checksum: 0x503b (correct) Source: 10.64.106.253 (10.64.106.253) Destination: 10.64.106.150 (10.64.106.150)
User Datagram Protocol, Src Port: domain (53), Dst Port: 1024 (1024)
Source port: domain (53) Destination port: 1024 (1024) Length: 124 Checksum: 0x3114 (correct)
Domain Name System (response)
Transaction ID: 0x9b9e Flags: 0x8580 (Standard query response, No error) 1... .... .... .... = Response: Message is a response .000 0... .... .... = Opcode: Standard query (0) .... .1.. .... .... = Authoritative: Server is an authority for domain .... ..0. .... .... = Truncated: Message is not truncated .... ...1 .... .... = Recursion desired: Do query recursively .... .... 1... .... = Recursion available: Server can do recursive queries .... .... .0.. .... = Z: reserved (0) .... .... ..0. .... = Answer authenticated: Answer/authority portion was not authenticated by the server .... .... .... 0000 = Reply code: No error (0) Questions: 1 Answer RRs: 1 Authority RRs: 1 Additional RRs: 1 Queries 254.106.64.10.in-addr.arpa: type PTR, class IN Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001) Answers 254.106.64.10.in-addr.arpa: type PTR, class IN, lugdh1-rtg.lugdh1 Name: 254.106.64.10.in-addr.arpa Type: PTR (Domain name pointer) Class: IN (0x0001) Time to live: 7 days Data length: 19 Domain name: lugdh1-rtg.lugdh1 Authoritative nameservers 106.64.10.in-addr.arpa: type NS, class IN, ns lugdh1-dns.lugdh1 Name: 106.64.10.in-addr.arpa Type: NS (Authoritative name server) Class: IN (0x0001) Time to live: 7 days Data length: 13 Name server: lugdh1-dns.lugdh1 Additional records lugdh1-dns.lugdh1: type A, class IN, addr 10.64.106.253 Name: lugdh1-dns.lugdh1 Type: A (Host address) Class: IN (0x0001) Time to live: 7 days Data length: 4 Addr: 10.64.106.253
No. Time Source Destination Protocol Info
23 12.727303 10.64.106.150 lugdh1-dns.lugdh1 ARP Who has 10.64.106.253? Tell 10.64.106.150
Frame 23 (42 bytes on wire, 42 bytes captured)
Arrival Time: Aug 20, 2006 00:35:27.153082000 Time delta from previous packet: 2.955262000 seconds Time since reference or first frame: 12.727303000 seconds Frame Number: 23 Packet Length: 42 bytes Capture Length: 42 bytes Protocols in frame: eth:arp
Ethernet II, Src: 00:0c:29:18:f2:80, Dst: 00:0c:29:e0:47:cd
Destination: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Source: 00:0c:29:18:f2:80 (10.64.106.150) Type: ARP (0x0806)
Address Resolution Protocol (request)
Hardware type: Ethernet (0x0001) Protocol type: IP (0x0800) Hardware size: 6 Protocol size: 4 Opcode: request (0x0001) Sender MAC address: 00:0c:29:18:f2:80 (10.64.106.150) Sender IP address: 10.64.106.150 (10.64.106.150) Target MAC address: 00:00:00:00:00:00 (00:00:00_00:00:00) Target IP address: 10.64.106.253 (10.64.106.253)
No. Time Source Destination Protocol Info
24 12.729623 lugdh1-dns.lugdh1 10.64.106.150 ARP 10.64.106.253 is at 00:0c:29:e0:47:cd
Frame 24 (60 bytes on wire, 60 bytes captured)
Arrival Time: Aug 20, 2006 00:35:27.155402000 Time delta from previous packet: 0.002320000 seconds Time since reference or first frame: 12.729623000 seconds Frame Number: 24 Packet Length: 60 bytes Capture Length: 60 bytes Protocols in frame: eth:arp
Ethernet II, Src: 00:0c:29:e0:47:cd, Dst: 00:0c:29:18:f2:80
Destination: 00:0c:29:18:f2:80 (10.64.106.150) Source: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Type: ARP (0x0806) Trailer: 000000000000000000000000000000000000
Address Resolution Protocol (reply)
Hardware type: Ethernet (0x0001) Protocol type: IP (0x0800) Hardware size: 6 Protocol size: 4 Opcode: reply (0x0002) Sender MAC address: 00:0c:29:e0:47:cd (lugdh1-dns.lugdh1) Sender IP address: 10.64.106.253 (10.64.106.253) Target MAC address: 00:0c:29:18:f2:80 (10.64.106.150) Target IP address: 10.64.106.150 (10.64.106.150)