Re: [tcpdump-workers] Using tcpdump to decrypt IPSec ESP sessions (none and aes-cbc)

2020-08-06 Thread Denis Ovsienko via tcpdump-workers
--- Begin Message --- On Thu, 6 Aug 2020 11:19:21 -0600 Philip Prindeville via tcpdump-workers wrote: > Hi. > > I’m trying to debug a Strongswan config and wanted to verify that my > GRE traffic is being encapsulated properly by IPSec. “Tcpdump” to > the rescue. Well, almost. > > So I was try

[tcpdump-workers] Using tcpdump to decrypt IPSec ESP sessions (none and aes-cbc)

2020-08-06 Thread Philip Prindeville via tcpdump-workers
--- Begin Message --- Hi. I’m trying to debug a Strongswan config and wanted to verify that my GRE traffic is being encapsulated properly by IPSec. “Tcpdump” to the rescue. Well, almost. So I was trying to use “ip xfrm state” to get the SPI and sessions keys, and then run "tcpdump … -E spi@a

Re: [tcpdump-workers] using tcpdump

2013-05-18 Thread Mahmood Naderan
Problem is, syslog (and kernel in general) doesn't record such things *at all*   Regards, Mahmood From: Mark W. Jeanmougin To: Mahmood Naderan Cc: "tcpdump-workers@lists.tcpdump.org" Sent: Sunday, May 19, 2013 1:09 AM Subject: Re: [tcpdump

Re: [tcpdump-workers] using tcpdump

2013-05-18 Thread Mahmood Naderan
;tcpdump-workers@lists.tcpdump.org" Sent: Thursday, May 16, 2013 6:26 PM Subject: Re: [tcpdump-workers] using tcpdump >>>>> "Mahmood" == Mahmood Naderan writes:     Mahmood> I am using scientific linux 6.3 which kernel     Mahmood> 2.6.32-279.5.1.el6.x86

Re: [tcpdump-workers] using tcpdump

2013-05-16 Thread Michael Richardson
> "Mahmood" == Mahmood Naderan writes: Mahmood> I am using scientific linux 6.3 which kernel Mahmood> 2.6.32-279.5.1.el6.x86_64. The chassis, say 'A', has 3 Mahmood> network interfaces. Eth1 has valid IP and is connected to Mahmood> internet and eth2 has invalid IP and is conn

[tcpdump-workers] using tcpdump

2013-05-16 Thread Mahmood Naderan
Hello all users I am using scientific linux 6.3 which kernel 2.6.32-279.5.1.el6.x86_64. The chassis, say 'A', has 3 network interfaces. Eth1 has valid IP and is connected to internet and eth2 has invalid IP and is connected to another local switch. Problem is that the internet is randomly discon

[tcpdump-workers] Using tcpdump to see tagged packets

2013-02-27 Thread Derek Cole
Hello, Is it possible in FreeBSD to use tcpdump to see what is happening to packets that are tagged with some pf tagging rules? Thanks ___ tcpdump-workers mailing list tcpdump-workers@lists.tcpdump.org https://lists.sandelman.ca/mailman/listinfo/tcpdump