mcmorran

LSC Traffic Capture

Jun 25th, 2012
91
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.57 KB | None | 0 0
  1. No. Time Source Destination Protocol Info
  2. 1 0.000000 lscsrv.example.net dc1.example.net TCP 38660 > ldap [SYN] Seq=0 Win=14600 Len=0 MSS=1460 TSV=1135124451 TSER=0 WS=7
  3.  
  4. No. Time Source Destination Protocol Info
  5. 2 0.000503 dc1.example.net lscsrv.example.net TCP ldap > 38660 [SYN, ACK] Seq=0 Ack=1 Win=8192 Len=0 MSS=1460 WS=8 TSV=34684254 TSER=1135124451
  6.  
  7. No. Time Source Destination Protocol Info
  8. 3 0.000516 lscsrv.example.net dc1.example.net TCP 38660 > ldap [ACK] Seq=1 Ack=1 Win=14720 Len=0 TSV=1135124452 TSER=34684254
  9.  
  10. No. Time Source Destination Protocol Info
  11. 4 0.001952 lscsrv.example.net dc1.example.net LDAP bindRequest(1) "CN=lscsync,CN=Users,DC=example,DC=net" simple
  12.  
  13. Lightweight-Directory-Access-Protocol
  14. LDAPMessage bindRequest(1) "CN=lscsync,CN=Users,DC=example,DC=net" simple
  15. messageID: 1
  16. protocolOp: bindRequest (0)
  17. bindRequest
  18. [Response In: 5]
  19.  
  20. No. Time Source Destination Protocol Info
  21. 5 0.003660 dc1.example.net lscsrv.example.net LDAP bindResponse(1) success
  22.  
  23. Lightweight-Directory-Access-Protocol
  24. LDAPMessage bindResponse(1) success
  25. messageID: 1
  26. protocolOp: bindResponse (1)
  27. bindResponse
  28. resultCode: success (0)
  29. matchedDN:
  30. errorMessage:
  31. [Response To: 4]
  32. [Time: 0.001708000 seconds]
  33.  
  34. No. Time Source Destination Protocol Info
  35. 6 0.003689 lscsrv.example.net dc1.example.net TCP 38660 > ldap [ACK] Seq=59 Ack=23 Win=14720 Len=0 TSV=1135124456 TSER=34684255
  36.  
  37. No. Time Source Destination Protocol Info
  38. 7 0.243973 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [SYN] Seq=0 Win=14600 Len=0 MSS=1460 TSV=1135124696 TSER=0 WS=7
  39.  
  40. No. Time Source Destination Protocol Info
  41. 8 0.244031 dbsrv.example.net lscsrv.example.net TCP postgresql > 60327 [SYN, ACK] Seq=0 Ack=1 Win=14480 Len=0 MSS=1460 TSV=2781294529 TSER=1135124696 WS=7
  42.  
  43. No. Time Source Destination Protocol Info
  44. 9 0.244045 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [ACK] Seq=1 Ack=1 Win=14720 Len=0 TSV=1135124696 TSER=2781294529
  45.  
  46. No. Time Source Destination Protocol Info
  47. 10 0.250717 lscsrv.example.net dbsrv.example.net PGSQL >
  48.  
  49. PostgreSQL
  50. Type: Startup message
  51. Length: 100
  52. user: dbuser
  53. database: userdb
  54. client_encoding: UNICODE
  55. DateStyle: ISO
  56. extra_float_digits: 2
  57.  
  58. No. Time Source Destination Protocol Info
  59. 11 0.250790 dbsrv.example.net lscsrv.example.net TCP postgresql > 60327 [ACK] Seq=1 Ack=101 Win=14592 Len=0 TSV=2781294536 TSER=1135124703
  60.  
  61. No. Time Source Destination Protocol Info
  62. 12 0.251834 dbsrv.example.net lscsrv.example.net PGSQL <R
  63.  
  64. PostgreSQL
  65. Type: Authentication request
  66. Length: 12
  67. Authentication type: MD5 password (5)
  68. Salt value: xxxxxxxxx
  69.  
  70. No. Time Source Destination Protocol Info
  71. 13 0.251858 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [ACK] Seq=101 Ack=14 Win=14720 Len=0 TSV=1135124704 TSER=2781294537
  72.  
  73. No. Time Source Destination Protocol Info
  74. 14 0.264262 lscsrv.example.net dbsrv.example.net PGSQL >p
  75.  
  76. PostgreSQL
  77. Type: Password message
  78. Length: 40
  79. Password: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
  80.  
  81. No. Time Source Destination Protocol Info
  82. 15 0.267694 dbsrv.example.net lscsrv.example.net PGSQL <R/S/S/S/S/S/S/S/S/S/S/S/K/Z
  83.  
  84. PostgreSQL
  85. Type: Authentication request
  86. Length: 8
  87. Authentication type: Success (0)
  88. PostgreSQL
  89. Type: Parameter status
  90. Length: 22
  91. application_name:
  92. PostgreSQL
  93. Type: Parameter status
  94. Length: 28
  95. client_encoding: UNICODE
  96. PostgreSQL
  97. Type: Parameter status
  98. Length: 23
  99. DateStyle: ISO, MDY
  100. PostgreSQL
  101. Type: Parameter status
  102. Length: 25
  103. integer_datetimes: on
  104. PostgreSQL
  105. Type: Parameter status
  106. Length: 27
  107. IntervalStyle: postgres
  108. PostgreSQL
  109. Type: Parameter status
  110. Length: 20
  111. is_superuser: on
  112. PostgreSQL
  113. Type: Parameter status
  114. Length: 25
  115. server_encoding: UTF8
  116. PostgreSQL
  117. Type: Parameter status
  118. Length: 25
  119. server_version: 9.1.3
  120. PostgreSQL
  121. Type: Parameter status
  122. Length: 35
  123. session_authorization: dbuser
  124. PostgreSQL
  125. Type: Parameter status
  126. Length: 35
  127. standard_conforming_strings: on
  128. PostgreSQL
  129. Type: Parameter status
  130. Length: 24
  131. TimeZone: US/Eastern
  132. PostgreSQL
  133. Type: Backend key data
  134. Length: 12
  135. PID: 26458
  136. Key: 479903947
  137. PostgreSQL
  138. Type: Ready for query
  139. Length: 5
  140. Status: Idle (73)
  141.  
  142. No. Time Source Destination Protocol Info
  143. 16 0.307682 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [ACK] Seq=142 Ack=342 Win=15744 Len=0 TSV=1135124760 TSER=2781294553
  144.  
  145. No. Time Source Destination Protocol Info
  146. 17 0.344867 lscsrv.example.net dbsrv.example.net PGSQL >P/B/E/P/B/D/E/S
  147.  
  148. PostgreSQL
  149. Type: Parse
  150. Length: 16
  151. Statement: S_1
  152. Query: BEGIN
  153. Parameters: 0
  154. PostgreSQL
  155. Type: Bind
  156. Length: 15
  157. Portal:
  158. Statement: S_1
  159. Parameter formats: 0
  160. Parameter values: 0
  161. Result formats: 0
  162. PostgreSQL
  163. Type: Execute
  164. Length: 9
  165. Portal:
  166. Returns: all rows
  167. PostgreSQL
  168. Type: Parse
  169. Length: 56
  170. Statement:
  171. Query: SELECT uid FROM usercns WHERE uid = 'adent'
  172. Parameters: 0
  173. PostgreSQL
  174. Type: Bind
  175. Length: 12
  176. Portal:
  177. Statement:
  178. Parameter formats: 0
  179. Parameter values: 0
  180. Result formats: 0
  181. PostgreSQL
  182. Type: Describe
  183. Length: 6
  184. Portal:
  185. PostgreSQL
  186. Type: Execute
  187. Length: 9
  188. Portal:
  189. Returns: all rows
  190. PostgreSQL
  191. Type: Sync
  192. Length: 4
  193.  
  194. No. Time Source Destination Protocol Info
  195. 18 0.348783 dbsrv.example.net lscsrv.example.net PGSQL <1/2/C/1/2/T/D/C/Z
  196.  
  197. PostgreSQL
  198. Type: Parse completion
  199. Length: 4
  200. PostgreSQL
  201. Type: Bind completion
  202. Length: 4
  203. PostgreSQL
  204. Type: Command completion
  205. Length: 10
  206. Tag: BEGIN
  207. PostgreSQL
  208. Type: Parse completion
  209. Length: 4
  210. PostgreSQL
  211. Type: Bind completion
  212. Length: 4
  213. PostgreSQL
  214. Type: Row description
  215. Length: 28
  216. Columns: 1
  217. Column name: uid
  218. Table OID: 48783
  219. Column index: 1
  220. Type OID: 1043
  221. Column length: -1
  222. Type modifier: 259
  223. Format: Text (0)
  224. PostgreSQL
  225. Type: Data row
  226. Length: 15
  227. Columns: 1
  228. Column length: 5
  229. Data: 6164656E74
  230. PostgreSQL
  231. Type: Command completion
  232. Length: 13
  233. Tag: SELECT 1
  234. PostgreSQL
  235. Type: Ready for query
  236. Length: 5
  237. Status: In a transaction (84)
  238.  
  239. No. Time Source Destination Protocol Info
  240. 19 0.348818 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [ACK] Seq=277 Ack=438 Win=15744 Len=0 TSV=1135124801 TSER=2781294634
  241.  
  242. No. Time Source Destination Protocol Info
  243. 20 0.377688 lscsrv.example.net dbsrv.example.net PGSQL >P/B/E/S
  244.  
  245. PostgreSQL
  246. Type: Parse
  247. Length: 19
  248. Statement: S_2
  249. Query: ROLLBACK
  250. Parameters: 0
  251. PostgreSQL
  252. Type: Bind
  253. Length: 15
  254. Portal:
  255. Statement: S_2
  256. Parameter formats: 0
  257. Parameter values: 0
  258. Result formats: 0
  259. PostgreSQL
  260. Type: Execute
  261. Length: 9
  262. Portal:
  263. Returns: 1 rows
  264. PostgreSQL
  265. Type: Sync
  266. Length: 4
  267.  
  268. No. Time Source Destination Protocol Info
  269. 21 0.378161 dbsrv.example.net lscsrv.example.net PGSQL <1/2/C/Z
  270.  
  271. PostgreSQL
  272. Type: Parse completion
  273. Length: 4
  274. PostgreSQL
  275. Type: Bind completion
  276. Length: 4
  277. PostgreSQL
  278. Type: Command completion
  279. Length: 13
  280. Tag: ROLLBACK
  281. PostgreSQL
  282. Type: Ready for query
  283. Length: 5
  284. Status: Idle (73)
  285.  
  286. No. Time Source Destination Protocol Info
  287. 22 0.393871 lscsrv.example.net dbsrv.example.net PGSQL >B/E/P/B/D/E/S
  288.  
  289. PostgreSQL
  290. Type: Bind
  291. Length: 15
  292. Portal:
  293. Statement: S_1
  294. Parameter formats: 0
  295. Parameter values: 0
  296. Result formats: 0
  297. PostgreSQL
  298. Type: Execute
  299. Length: 9
  300. Portal:
  301. Returns: all rows
  302. PostgreSQL
  303. Type: Parse
  304. Length: 77
  305. Statement:
  306. Query: SELECT uid, unicodepwd, cn FROM usercns WHERE uid = $1
  307. Parameters: 1
  308. Type OID: 1043
  309. PostgreSQL
  310. Type: Bind
  311. Length: 23
  312. Portal:
  313. Statement:
  314. Parameter formats: 1
  315. Format: Text (0)
  316. Parameter values: 1
  317. Column length: 5
  318. Data: 6164656E74
  319. Result formats: 0
  320. PostgreSQL
  321. Type: Describe
  322. Length: 6
  323. Portal:
  324. PostgreSQL
  325. Type: Execute
  326. Length: 9
  327. Portal:
  328. Returns: all rows
  329. PostgreSQL
  330. Type: Sync
  331. Length: 4
  332.  
  333. No. Time Source Destination Protocol Info
  334. 23 0.395560 dbsrv.example.net lscsrv.example.net PGSQL <2/C/1/2/T/D/C/Z
  335.  
  336. PostgreSQL
  337. Type: Bind completion
  338. Length: 4
  339. PostgreSQL
  340. Type: Command completion
  341. Length: 10
  342. Tag: BEGIN
  343. PostgreSQL
  344. Type: Parse completion
  345. Length: 4
  346. PostgreSQL
  347. Type: Bind completion
  348. Length: 4
  349. PostgreSQL
  350. Type: Row description
  351. Length: 78
  352. Columns: 3
  353. Column name: uid
  354. Table OID: 48783
  355. Column index: 1
  356. Type OID: 1043
  357. Column length: -1
  358. Type modifier: 259
  359. Format: Text (0)
  360. Column name: unicodepwd
  361. Table OID: 48783
  362. Column index: 2
  363. Type OID: 1043
  364. Column length: -1
  365. Type modifier: 259
  366. Format: Text (0)
  367. Column name: cn
  368. Table OID: 48783
  369. Column index: 3
  370. Type OID: 1043
  371. Column length: -1
  372. Type modifier: 259
  373. Format: Text (0)
  374. PostgreSQL
  375. Type: Data row
  376. Length: 41
  377. Columns: 3
  378. Column length: 5
  379. Data: 6164656E74
  380. Column length: 7
  381. Data: xxxxxxxxxxxxxx
  382. Column length: 11
  383. Data: 4172746875722044656E74
  384. PostgreSQL
  385. Type: Command completion
  386. Length: 13
  387. Tag: SELECT 1
  388. PostgreSQL
  389. Type: Ready for query
  390. Length: 5
  391. Status: In a transaction (84)
  392.  
  393. No. Time Source Destination Protocol Info
  394. 24 0.395734 lscsrv.example.net dbsrv.example.net PGSQL >B/E/S
  395.  
  396. PostgreSQL
  397. Type: Bind
  398. Length: 15
  399. Portal:
  400. Statement: S_2
  401. Parameter formats: 0
  402. Parameter values: 0
  403. Result formats: 0
  404. PostgreSQL
  405. Type: Execute
  406. Length: 9
  407. Portal:
  408. Returns: 1 rows
  409. PostgreSQL
  410. Type: Sync
  411. Length: 4
  412.  
  413. No. Time Source Destination Protocol Info
  414. 25 0.395849 dbsrv.example.net lscsrv.example.net PGSQL <2/C/Z
  415.  
  416. PostgreSQL
  417. Type: Bind completion
  418. Length: 4
  419. PostgreSQL
  420. Type: Command completion
  421. Length: 13
  422. Tag: ROLLBACK
  423. PostgreSQL
  424. Type: Ready for query
  425. Length: 5
  426. Status: Idle (73)
  427.  
  428. No. Time Source Destination Protocol Info
  429. 26 0.435706 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [ACK] Seq=509 Ack=660 Win=16768 Len=0 TSV=1135124888 TSER=2781294681
  430.  
  431. No. Time Source Destination Protocol Info
  432. 27 0.712140 lscsrv.example.net dc1.example.net TCP 38660 > ldap [FIN, ACK] Seq=59 Ack=23 Win=14720 Len=0 TSV=1135125164 TSER=34684255
  433.  
  434. No. Time Source Destination Protocol Info
  435. 28 0.712180 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [FIN, ACK] Seq=509 Ack=660 Win=16768 Len=0 TSV=1135125164 TSER=2781294681
  436.  
  437. No. Time Source Destination Protocol Info
  438. 29 0.712515 dc1.example.net lscsrv.example.net TCP ldap > 38660 [ACK] Seq=23 Ack=60 Win=66560 Len=0 TSV=34684326 TSER=1135125164
  439.  
  440. No. Time Source Destination Protocol Info
  441. 30 0.712534 dc1.example.net lscsrv.example.net TCP ldap > 38660 [RST, ACK] Seq=23 Ack=60 Win=0 Len=0
  442.  
  443. No. Time Source Destination Protocol Info
  444. 31 0.713155 dbsrv.example.net lscsrv.example.net TCP postgresql > 60327 [FIN, ACK] Seq=660 Ack=510 Win=16640 Len=0 TSV=2781294998 TSER=1135125164
  445.  
  446. No. Time Source Destination Protocol Info
  447. 32 0.713169 lscsrv.example.net dbsrv.example.net TCP 60327 > postgresql [ACK] Seq=510 Ack=661 Win=16768 Len=0 TSV=1135125165 TSER=2781294998
Advertisement
Add Comment
Please, Sign In to add comment