odd tcpdump

Lauri Tischler (lauri.tischler@efore.fi)
Thu, 26 Nov 1998 01:01:32 +0200


tcpdump output is very odd, it claims a lot fragmented packets
like this and below :
00:51:29.869597 truncated-ip - 16322 bytes missing!0.69.0.235 > 0.0.64.17:
(frag 31676:16401@65528+)
ip above is totally bogus.
things generally works just fine, just tcpdump looks very funny.

General config is:
the gw-home is connected to NT-RAS via ISDN
kernel 2.0.36
debian hamm
ip allways defragment Yes
isdn4k-utils-3.0beta1

tcpdump was correct with 2.0.34 and isdnstuff from clean Debian Hamm
Oddities started with 2.036 and new isdnutils
---------
gw-home:/var/log# tcpdump -i ippp0 -n
tcpdump: listening on ippp0

00:52:23.759597 0.40.254.30 > 64.0.127.6: (frag 49388:-4@34048) [tos 0xa0]
00:52:23.829597 192.168.1.2.143 > 192.168.111.2.1122: . 1460:2920(1460) ack 1
win 32736 (DF) [tos 0x6]
00:52:23.969597 0.40.0.31 > 64.0.127.6: (frag 49388:-4@34048) [tos 0xa0]
00:52:24.049597 192.168.1.2.143 > 192.168.111.2.1122: P 2920:3392(472) ack 1
win 32736 (DF) [tos 0x6]
00:52:24.169597 0.40.2.31 > 64.0.127.6: (frag 49388:-4@34048) [tos 0xa0]
00:52:25.379597 0.49.5.31 > 64.0.127.6: (frag 49388:-4@34048) [tos 0xa0]
00:52:25.409597 192.168.1.2.143 > 192.168.111.2.1122: P 3392:3409(17) ack 10
win 32736 (DF) [tos 0x6]
00:52:25.409597 0.85.6.31 > 64.0.127.6: (frag 49388:-4@34048) [tos 0xa0]
00:52:25.659597 192.168.1.2.143 > 192.168.111.2.1122: . 3409:4869(1460) ack 55
win 32736 (DF) [tos 0x6]
00:52:25.839597 0.40.9.31 > 64.0.127.6: (frag 49388:-4@34048) [tos 0xa0]
00:52:25.999597 192.168.1.2.143 > 192.168.111.2.1122: P 4869:5751(882) ack 55
win 32736 (DF) [tos 0x6]

Any ideas ?
Cheers..

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/