当前位置: 技术问答>linux和unix
LINUX tcpdump工具接收udp端口的包
来源: 互联网 发布时间:2016-10-07
本文导语: [root@alarmnode01 ~]# tcpdump -vv -s 0 -i bond0 udp port 51162 tcpdump: listening on bond0, link-type EN10MB (Ethernet), capture size 65535 bytes 10:32:30.540174 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1142) 132....
[root@alarmnode01 ~]# tcpdump -vv -s 0 -i bond0 udp port 51162
tcpdump: listening on bond0, link-type EN10MB (Ethernet), capture size 65535 bytes
10:32:30.540174 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1142) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1114
10:32:30.787550 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1077) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1049
10:32:42.648090 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1072) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1044
10:32:42.897215 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1138) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1110
问:为什么没有信息?
理论上信息如下:
1.3.6.1.4.1.2011.2.15.2.1.2.1.1.1.1.0 => SNMP Agent
1.3.6.1.4.1.2011.2.15.2.1.2.1.1.1.2.0 => 30
1.3.6.1.4.1.2011.2.15.2.1.2.1.1.1.3.0 => 2010-04-26 09:28:46 +08:00
tcpdump: listening on bond0, link-type EN10MB (Ethernet), capture size 65535 bytes
10:32:30.540174 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1142) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1114
10:32:30.787550 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1077) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1049
10:32:42.648090 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1072) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1044
10:32:42.897215 IP (tos 0x0, ttl 55, id 0, offset 0, flags [DF], proto: UDP (17), length: 1138) 132.33.3.214.33249 > 132.228.166.201.51162: [udp sum ok] UDP, length 1110
问:为什么没有信息?
理论上信息如下:
1.3.6.1.4.1.2011.2.15.2.1.2.1.1.1.1.0 => SNMP Agent
1.3.6.1.4.1.2011.2.15.2.1.2.1.1.1.2.0 => 30
1.3.6.1.4.1.2011.2.15.2.1.2.1.1.1.3.0 => 2010-04-26 09:28:46 +08:00
|
额,我又肤浅了一把....
我在本机上试了下,和你的差不多哈
但是
-vvx 会显示很多内容呢
我在本机上试了下,和你的差不多哈
但是
-vvx 会显示很多内容呢