Kolab accepting SMTP connections

Denis Croombs denis at just-servers.co.uk
Fri May 21 10:51:30 CEST 2004


> tcpdump -i eth0 port 25
>
> maybe with more parameters to catch the full packets, see man tcpdump,
> or man ethereal
>
Thanks that gives an output of:-

[root at rdcredits kevin]# tcpdump -i eth0 port 25
tcpdump: listening on eth0
09:45:29.003291 rack1.just-hosting.biz.57310 > rdcredits.smtp: S
724352758:724352758(0) win 5840 <mss 1460,sackOK,timestamp 3889285460
0,nop,wscale 0> (DF)
09:45:29.003355 rdcredits.smtp > rack1.just-hosting.biz.57310: S
1154943338:1154943338(0) ack 724352759 win 5792 <mss 1460,sackOK,timestamp
8108297 3889285460,nop,wscale 0> (DF)
09:45:29.135200 rack1.just-hosting.biz.57310 > rdcredits.smtp: . ack 1 win
5840 <nop,nop,timestamp 3889285528 8108297> (DF)
09:45:29.202489 rdcredits.smtp > rack1.just-hosting.biz.57310: P 1:43(42)
ack 1 win 5792 <nop,nop,timestamp 8108317 3889285528> (DF)
09:45:29.334276 rack1.just-hosting.biz.57310 > rdcredits.smtp: . ack 43 win
5840 <nop,nop,timestamp 3889285630 8108317> (DF)
09:45:29.336407 rack1.just-hosting.biz.57310 > rdcredits.smtp: P 1:30(29)
ack 43 win 5840 <nop,nop,timestamp 3889285630 8108317> (DF)
09:45:29.336423 rdcredits.smtp > rack1.just-hosting.biz.57310: . ack 30 win
5792 <nop,nop,timestamp 8108331 3889285630> (DF)
09:45:30.344424 rdcredits.smtp > rack1.just-hosting.biz.57310: F 43:43(0)
ack 30 win 5792 <nop,nop,timestamp 8108432 3889285630> (DF)
09:45:30.477576 rack1.just-hosting.biz.57310 > rdcredits.smtp: F 30:30(0)
ack 44 win 5840 <nop,nop,timestamp 3889286215 8108432> (DF)
09:45:30.477614 rdcredits.smtp > rack1.just-hosting.biz.57310: . ack 31 win
5792 <nop,nop,timestamp 8108445 3889286215> (DF)
09:45:46.749903 rack1.just-hosting.biz.57310 > rdcredits.smtp: R 31:31(0)
ack 44 win 0 (DF)
09:46:15.293489 rack1.just-hosting.biz.57311 > rdcredits.smtp: S
776350112:776350112(0) win 5840 <mss 1460,sackOK,timestamp 3889309165
0,nop,wscale 0> (DF)
09:46:15.293532 rdcredits.smtp > rack1.just-hosting.biz.57311: S
1204484488:1204484488(0) ack 776350113 win 5792 <mss 1460,sackOK,timestamp
8112926 3889309165,nop,wscale 0> (DF)
09:46:15.421528 rack1.just-hosting.biz.57311 > rdcredits.smtp: . ack 1 win
5840 <nop,nop,timestamp 3889309230 8112926> (DF)
09:46:30.481160 rdcredits.smtp > rack1.just-hosting.biz.57311: P 1:43(42)
ack 1 win 5792 <nop,nop,timestamp 8114445 3889309230> (DF)
09:46:30.612968 rack1.just-hosting.biz.57311 > rdcredits.smtp: . ack 43 win
5840 <nop,nop,timestamp 3889317010 8114445> (DF)
09:46:30.614916 rack1.just-hosting.biz.57311 > rdcredits.smtp: P 1:30(29)
ack 43 win 5840 <nop,nop,timestamp 3889317010 8114445> (DF)
09:46:30.614932 rdcredits.smtp > rack1.just-hosting.biz.57311: . ack 30 win
5792 <nop,nop,timestamp 8114459 3889317010> (DF)
09:46:31.624443 rdcredits.smtp > rack1.just-hosting.biz.57311: F 43:43(0)
ack 30 win 5792 <nop,nop,timestamp 8114560 3889317010> (DF)
09:46:31.754310 rack1.just-hosting.biz.57311 > rdcredits.smtp: F 30:30(0)
ack 44 win 5840 <nop,nop,timestamp 3889317594 8114560> (DF)
09:46:31.754344 rdcredits.smtp > rack1.just-hosting.biz.57311: . ack 31 win
5792 <nop,nop,timestamp 8114573 3889317594> (DF)
09:46:48.252893 rack1.just-hosting.biz.57311 > rdcredits.smtp: R 31:31(0)
ack 44 win 0 (DF)

But I have no idea what the hell is going on, any cues ?


-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.

Marvin the E-Mail scanner




More information about the users mailing list