tcpdump help
I did a tcpdump of my wireless network. I have no idea of where this ip 169.254.1.35 is from- how do i begin to find out the source of this IP?
Code:
casper@casper-laptop:~$ sudo tcpdump -A -n -i wlan1 host 169.254.1.35 |
wait...i think this i a link local address used in address assignment when there is no dhcp.
I just don't know why it keeps pinging each other. I guess there is no leasing. |
Set full payload saving with "-s0" and write the packets to a file with "-w /path/to/file". When done run the saved "/path/to/file" through Wireshark or any other comprehensive network traffic analysis tool and find out what this (XML-like) it's payload is about.
|
All times are GMT -5. The time now is 05:06 PM. |