ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
July 17th, 2024 | 10:00am-11:55am SGT (UTC+8) | Online

Ethereal-users: [ethereal-users] Radius v. Winproxy

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: "Lars Knudsen" <lk@xxxxxxx>
Date: Mon, 22 May 2000 13:44:18 +0200
Greetings..

I am trying to sniff a connection between our radius server and a lucent tnt
box. And this is what I get...
(It�s only 2 frames.. the sniff was a bit longer..8-))
Does anybody know why it does not say radius but winproxy??

--------- Start frames ----------

Frame 51 (62 on wire, 62 captured)
    Arrival Time: May 22, 2000 10:55:15.5216
    Time delta from previous packet: 0.000862 seconds
    Frame Number: 51
    Packet Length: 62 bytes
    Capture Length: 62 bytes
Ethernet II
    Destination: 00:c0:7b:98:46:23 (00:c0:7b:98:46:23)
    Source: 00:e0:b0:2c:db:99 (00:e0:b0:2c:db:99)
    Type: IP (0x0800)
Internet Protocol
    Version: 4
    Header length: 20 bytes
    Differentiated Services Field: 0x00 (DSCP 0x00: Default)
        0000 00.. = Differentiated Services Codepoint: Default (0x00)
        .... ..00 = Currently Unused: 0
    Total Length: 48
    Identification: 0x1e7c
    Flags: 0x04
        .1.. = Don't fragment: Set
        ..0. = More fragments: Not set
    Fragment offset: 0
    Time to live: 252
    Protocol: UDP (0x11)
    Header checksum: 0x5cd2 (correct)
    Source: 129.142.7.102 (129.142.7.102)
    Destination: 130.227.247.150 (130.227.247.150)
User Datagram Protocol
    Source port: 1745 (1745)
    Destination port: 1802 (1802)
    Length: 28
    Checksum: 0x4549
MSProxy Protocol
    Client id: 0x1400c903
    Version: 0xd40bdf31
    Server id: 0x306d2e1d
    Client ack: 0x1d
    Sequence Number: 0x61
    ****FRAME TOO SHORT***

Frame 52 (108 on wire, 108 captured)
    Arrival Time: May 22, 2000 10:55:15.5248
    Time delta from previous packet: 0.003145 seconds
    Frame Number: 52
    Packet Length: 108 bytes
    Capture Length: 108 bytes
Ethernet II
    Destination: 00:e0:b0:2c:db:99 (00:e0:b0:2c:db:99)
    Source: 00:c0:7b:98:46:23 (00:c0:7b:98:46:23)
    Type: IP (0x0800)
Internet Protocol
    Version: 4
    Header length: 20 bytes
    Differentiated Services Field: 0x00 (DSCP 0x00: Default)
        0000 00.. = Differentiated Services Codepoint: Default (0x00)
        .... ..00 = Currently Unused: 0
    Total Length: 94
    Identification: 0x5f3b
    Flags: 0x00
        .0.. = Don't fragment: Not set
        ..0. = More fragments: Not set
    Fragment offset: 0
    Time to live: 64
    Protocol: UDP (0x11)
    Header checksum: 0x17e6 (correct)
    Source: 130.227.247.150 (130.227.247.150)
    Destination: 129.142.7.102 (129.142.7.102)
User Datagram Protocol
    Source port: 1802 (1802)
    Destination port: 1745 (1745)
    Length: 74
    Checksum: 0xb52f
MSProxy Protocol
    Client id: 0x4200d001
    Version: 0xb5926d03
    Server id: 0xfd1244c
    Server ack: 40
    Sequence Number: 143
    RWSP signature: xrou
    Command: 0x9396 (Unknown)
    Unhandled request command (report this, please)


--------- end frames --------



-------------------------------------------------------------------
Lars Knudsen | DriftsTekniker | UNI2 | www.uni2.dk | 7730 1227
Gl.Koge Landevej 55 | 2500  Valby | 20 80 89 88 | ICQ 3770699
lk@xxxxxxx | gud@xxxxxxxxxx | www.dulmens.dk | oso@xxxxxxxxxx

--> This message has been sent on 100% recycled electrons <--
                           ---    __o-
                          ---   _-\<,_  Service der rykker
                           --- (-)/ (-)
-------------------------------------------------------------------