Skip to content

Instantly share code, notes, and snippets.

@theonewolf
Last active December 30, 2015 12:29
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save theonewolf/7829761 to your computer and use it in GitHub Desktop.
Save theonewolf/7829761 to your computer and use it in GitHub Desktop.
packet logging test
iptables -t filter -I INPUT 1 -p tcp --dport 1928 -j LOG --log-prefix 'gabriel: ' --log-level 4 --log-tcp-sequence
# might need to use chain FORWARD, unsure
# probably use prefixes to differentiate packets
Dec 6 13:25:08 gs9671 kernel: [1033918.821626] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=35557 DF PROTO=TCP SPT=44525 DPT=1928 SEQ=4152851332 ACK=0 WINDOW=32792 RES=0x00 SYN URGP=0
Dec 6 13:25:08 gs9671 kernel: [1033918.821676] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=35558 DF PROTO=TCP SPT=44525 DPT=1928 SEQ=4152851333 ACK=1150088049 WINDOW=257 RES=0x00 ACK URGP=0
Dec 6 13:25:08 gs9671 kernel: [1033918.821737] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=35559 DF PROTO=TCP SPT=44525 DPT=1928 SEQ=4152851333 ACK=1150088049 WINDOW=257 RES=0x00 ACK PSH URGP=0
Dec 6 13:25:08 gs9671 kernel: [1033918.821781] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=35560 DF PROTO=TCP SPT=44525 DPT=1928 SEQ=4152851341 ACK=1150088049 WINDOW=257 RES=0x00 ACK FIN URGP=0
Dec 6 13:25:08 gs9671 kernel: [1033918.821862] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=35561 DF PROTO=TCP SPT=44525 DPT=1928 SEQ=4152851342 ACK=1150088050 WINDOW=257 RES=0x00 ACK URGP=0
Dec 6 13:27:58 gs9671 kernel: [1034088.317568] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=62398 DF PROTO=TCP SPT=44530 DPT=1928 SEQ=455763289 ACK=0 WINDOW=32792 RES=0x00 SYN URGP=0
Dec 6 13:27:58 gs9671 kernel: [1034088.317619] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=62399 DF PROTO=TCP SPT=44530 DPT=1928 SEQ=455763290 ACK=1975187926 WINDOW=257 RES=0x00 ACK URGP=0
Dec 6 13:27:58 gs9671 kernel: [1034088.317698] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=1076 TOS=0x00 PREC=0x00 TTL=64 ID=62400 DF PROTO=TCP SPT=44530 DPT=1928 SEQ=455763290 ACK=1975187926 WINDOW=257 RES=0x00 ACK PSH URGP=0
Dec 6 13:27:58 gs9671 kernel: [1034088.317742] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=1076 TOS=0x00 PREC=0x00 TTL=64 ID=62401 DF PROTO=TCP SPT=44530 DPT=1928 SEQ=455764314 ACK=1975187926 WINDOW=257 RES=0x00 ACK PSH URGP=0
Dec 6 13:27:58 gs9671 kernel: [1034088.317782] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=62402 DF PROTO=TCP SPT=44530 DPT=1928 SEQ=455765338 ACK=1975187926 WINDOW=257 RES=0x00 ACK FIN URGP=0
Dec 6 13:27:58 gs9671 kernel: [1034088.317863] gabriel: IN=lo OUT= MAC=00:00:00:00:00:00:00:00:00:00:00:00:08:00 SRC=127.0.0.1 DST=127.0.0.1 LEN=52 TOS=0x00 PREC=0x00 TTL=64 ID=62403 DF PROTO=TCP SPT=44530 DPT=1928 SEQ=455765339 ACK=1975187927 WINDOW=257 RES=0x00 ACK URGP=0
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment