rge
le tcpdump donne :
22:48:49.859390 IP (tos 0x10, ttl 64, id 65300, offset 0, flags [DF], proto: TCP (6), length: 52) 192.168.2.1.60581 > relay.ipacs.fr.smtp: F, cksum 0xabae (correct), 4155001566:4155001566(0) ack 4127068289 win 46 <nop,nop,timestamp 6092170 1695768607>
22:48:49.859851 IP (tos 0x0, ttl 64, id 62858, offset 0, flags [DF], proto: UDP (17), length: 71) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum 9885!] 39914+ PTR? 45.66.41.213.in-addr.arpa. (43)
22:48:49.860559 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 149) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 39914 q: PTR? 45.66.41.213.in-addr.arpa. 1/2/0 45.66.41.213.in-addr.arpa. PTR relay.ipacs.fr. ns: 66.41.213.in-addr.arpa. NS ns0.coltfrance.com., 66.41.213.in-addr.arpa. NS ns1.coltfrance.com. (121)
22:48:49.860649 IP (tos 0x0, ttl 64, id 62858, offset 0, flags [DF], proto: UDP (17), length: 70) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum f339!] 44543+ PTR? 1.2.168.192.in-addr.arpa. (42)
22:48:49.861104 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 147) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 44543 NXDomain q: PTR? 1.2.168.192.in-addr.arpa. 0/1/0 ns: 168.192.in-addr.arpa. SOA prisoner.iana.org. hostmaster.root-servers.org. 2002040800 1800 900 604800 604800 (119)
22:48:49.861190 IP (tos 0x0, ttl 64, id 62858, offset 0, flags [DF], proto: UDP (17), length: 72) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum 63e2!] 52820+ PTR? 254.1.168.192.in-addr.arpa. (44)
22:48:49.861640 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 149) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 52820 NXDomain q: PTR? 254.1.168.192.in-addr.arpa. 0/1/0 ns: 168.192.in-addr.arpa. SOA prisoner.iana.org. hostmaster.root-servers.org. 2002040800 1800 900 604800 604800 (121)
22:48:50.609525 IP (tos 0x0, ttl 64, id 63045, offset 0, flags [DF], proto: UDP (17), length: 61) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum 94d6!] 2831+ AAAA? mail.adefim.com. (33)
22:48:50.609989 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 123) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 2831 q: AAAA? mail.adefim.com. 0/1/0 ns: adefim.com. SOA ns0.coltfrance.com. hostmaster.coltfrance.com. 2007021201 21600 3600 604800 3600 (95)
22:48:50.610070 IP (tos 0x0, ttl 64, id 63046, offset 0, flags [DF], proto: UDP (17), length: 73) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum 37af!] 6861+ AAAA? mail.adefim.com.localdomain. (45)
22:48:50.610504 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 148) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 6861 NXDomain q: AAAA? mail.adefim.com.localdomain. 0/1/0 ns: . SOA A.ROOT-SERVERS.NET. NSTLD.VERISIGN-GRS.COM. 2007050900 1800 900 604800 86400 (120)
22:48:50.610546 IP (tos 0x0, ttl 64, id 63046, offset 0, flags [DF], proto: UDP (17), length: 61) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum 3ea!] 4768+ A? mail.adefim.com. (33)
22:48:50.611156 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 124) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 4768 q: A? mail.adefim.com. 1/2/0 mail.adefim.com. A relay.ipacs.fr ns: adefim.com. NS ns0.coltfrance.com., adefim.com. NS ns1.coltfrance.com. (96)
22:48:50.611506 IP (tos 0x10, ttl 64, id 30672, offset 0, flags [DF], proto: TCP (6), length: 60) 192.168.2.1.60582 > relay.ipacs.fr.smtp: S, cksum 0xf624 (correct), 4229005718:4229005718(0) win 5840 <mss 1460,sackOK,timestamp 6092358 0,nop,wscale 7>
22:48:53.611854 IP (tos 0x10, ttl 64, id 30673, offset 0, flags [DF], proto: TCP (6), length: 60) 192.168.2.1.60582 > relay.ipacs.fr.smtp: S, cksum 0xf336 (correct), 4229005718:4229005718(0) win 5840 <mss 1460,sackOK,timestamp 6093108 0,nop,wscale 7>
22:48:53.707054 IP (tos 0x0, ttl 56, id 38203, offset 0, flags [DF], proto: TCP (6), length: 60) relay.ipacs.fr.smtp > 192.168.2.1.60582: S, cksum 0x0f7f (correct), 3843308415:3843308415(0) ack 4229005719 win 65535 <mss 1380,nop,wscale 1,nop,nop,timestamp 1695775508 6092358>
22:48:53.707076 IP (tos 0x10, ttl 64, id 30674, offset 0, flags [DF], proto: TCP (6), length: 52) 192.168.2.1.60582 > relay.ipacs.fr.smtp: ., cksum 0x37c0 (correct), 1:1(0) ack 1 win 46 <nop,nop,timestamp 6093132 1695775508>
22:48:54.859591 arp who-has 192.168.2.1 tell 192.168.2.254
22:48:54.859601 arp reply 192.168.2.1 is-at 00:19:21:57:c4:66 (oui Unknown)
22:48:54.859714 IP (tos 0x0, ttl 64, id 64108, offset 0, flags [DF], proto: UDP (17), length: 72) 192.168.2.1.filenet-nch > 192.168.1.254.domain: [bad udp cksum d767!] 18656+ PTR? 254.2.168.192.in-addr.arpa. (44)
22:48:54.860185 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 149) 192.168.1.254.domain > 192.168.2.1.filenet-nch: [udp sum ok] 18656 NXDomain q: PTR? 254.2.168.192.in-addr.arpa. 0/1/0 ns: 168.192.in-addr.arpa. SOA prisoner.iana.org. hostmaster.root-servers.org. 2002040800 1800 900 604800 604800 (121)
22:48:59.204558 IP (tos 0x10, ttl 64, id 65301, offset 0, flags [DF], proto: TCP (6), length: 52) 192.168.2.1.60581 > relay.ipacs.fr.smtp: F, cksum 0xa28e (correct), 0:0(0) ack 1 win 46 <nop,nop,timestamp 6094506 1695768607>
22:49:01.375659 IP (tos 0x10, ttl 64, id 30675, offset 0, flags [DF], proto: TCP (6), length: 68) 192.168.2.1.60582 > relay.ipacs.fr.smtp: P, cksum 0xda36 (incorrect (-> 0xc16c), 1:17(16) ack 1 win 46 <nop,nop,timestamp 6095049 1695775508>
Raphael