64 lines
609 B
Plaintext
64 lines
609 B
Plaintext
|
|
|
||
|
|
I)
|
||
|
|
1)
|
||
|
|
ip link
|
||
|
|
|
||
|
|
2)
|
||
|
|
ip link show dev lo
|
||
|
|
|
||
|
|
3)
|
||
|
|
ip address
|
||
|
|
lo MTU 65536
|
||
|
|
eno1 MTU 1500
|
||
|
|
|
||
|
|
4)
|
||
|
|
ip address show dev eno1
|
||
|
|
|
||
|
|
5)
|
||
|
|
ARP(Address Resolution Protocol)
|
||
|
|
ip neigh
|
||
|
|
|
||
|
|
6)
|
||
|
|
ip -r neigh
|
||
|
|
|
||
|
|
ping gatekeeper.arda.lan
|
||
|
|
172.16.1.254
|
||
|
|
ip neigh
|
||
|
|
172.16.1.254 dev eno1 lladdr 52:54:00:e7:b9:0f
|
||
|
|
|
||
|
|
7)
|
||
|
|
ip r
|
||
|
|
|
||
|
|
default via 172.16.1.254 dev eno1
|
||
|
|
|
||
|
|
|
||
|
|
II)
|
||
|
|
|
||
|
|
TSHARK:
|
||
|
|
|
||
|
|
tshark -i eno1 -f "host 172.16.3.198 and host 172.16.3.197"
|
||
|
|
ping -c1 172.16.3.197
|
||
|
|
ip n
|
||
|
|
|
||
|
|
|
||
|
|
TCPDUMP:
|
||
|
|
|
||
|
|
tcpdump -i
|
||
|
|
|
||
|
|
|
||
|
|
|
||
|
|
3)
|
||
|
|
En tête Ethernet : -e
|
||
|
|
Supprimer timestamp -t
|
||
|
|
mettre en format : -l
|
||
|
|
|
||
|
|
|
||
|
|
|
||
|
|
III)
|
||
|
|
|
||
|
|
1)
|
||
|
|
Option est -s
|
||
|
|
|
||
|
|
2)
|
||
|
|
les paquets sont coupé en 1514 octets et regroupé en 9216 octets
|