Re: Problem sending E-mail to 1 server
- From: "Motley" <motleyucw@xxxxxxxxxxx>
- Date: 15 Dec 2005 10:52:31 -0800
The hardware firewall we have AP450 does not have any logging
abilities. What I did do was setup a packet capturing for the mail
server and quite honestly I still have no idea what the problem is. I
will post the packets log I captured so hopefully someone can figure
out what the heck is going on. If I try the same thing (telnet to port
25) on another mail server (smtp-server.rochester.rr.com) for example
it works just fine. It starts out on port 25 and then gets moved to a
higher port in the 30,000's range. So if some kind soul would lokk at
this log maybe you can see something I don't. I can also post a packet
log for the mail server that I mentioned that does work. Thank You in
advance.
Packet 1: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 78
Time: 10h:49m 00.635 845s, Diff. time: 0.000000
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 60
ID: 0xA196
Fragment flags: [00] - may fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [1] ICMP
Header checksum: 0xEE82 (Good)
ICMP: Type [8] Echo Request
Code: [0]
Checksum: 0x57C0, Identifier: 0x0200, Sequence number: 0xF39B
---------------------------------------------------------------
---------------------------------------------------------------
Packet 2: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 78
Time: 10h:49m 05.714 342s, Diff. time: 5.078497
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 60
ID: 0xA1A2
Fragment flags: [00] - may fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [1] ICMP
Header checksum: 0xEE76 (Good)
ICMP: Type [8] Echo Request
Code: [0]
Checksum: 0x56C0, Identifier: 0x0200, Sequence number: 0xF49B
---------------------------------------------------------------
---------------------------------------------------------------
Packet 3: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 78
Time: 10h:49m 10.721 518s, Diff. time: 5.007176
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 60
ID: 0xA1C6
Fragment flags: [00] - may fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [1] ICMP
Header checksum: 0xEE52 (Good)
ICMP: Type [8] Echo Request
Code: [0]
Checksum: 0x55C0, Identifier: 0x0200, Sequence number: 0xF59B
---------------------------------------------------------------
---------------------------------------------------------------
Packet 4: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 78
Time: 10h:49m 15.728 741s, Diff. time: 5.007223
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 60
ID: 0xA268
Fragment flags: [00] - may fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [1] ICMP
Header checksum: 0xEDB0 (Good)
ICMP: Type [8] Echo Request
Code: [0]
Checksum: 0x53C0, Identifier: 0x0200, Sequence number: 0xF79B
---------------------------------------------------------------
---------------------------------------------------------------
Packet 5: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 66
Time: 10h:49m 47.029 071s, Diff. time: 31.300330
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 48
ID: 0xA3E1
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xAC3E (Good)
TCP SYN, [33575] -> [23]
Source port: [33575] Destination port: [23] Telnet
Source Port : 33575
Destination Port : 23
Sequence number: 3041300016
Acknowledgement: 0
TCP flags: SYN Header length: [7]*4 bytes = 28 bytes
0000.... ........ : TCP header length (Data Offset) [7]*4 bytes =
28 bytes
....0001 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field not significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......1 : Expect more data from sender
Window: 65535
Checksum: 11C2h (GOOD),
Urgent Pointer: 0 - not significant
Options:
Option #1: 2 = Maximum Segment Size
Kind: 2 = Maximum Segment Size
Length: 4
Maximum Segment Length: 1460
Option #2: 1 = No-Operation
Option #3: 1 = No-Operation
Option #4: 4 = SACK Permitted
Kind: 4 = Maximum Segment Size
Length: 2
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 3041300016 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 6: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 66
Time: 10h:49m 49.987 353s, Diff. time: 2.958282
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 48
ID: 0xA40C
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xAC13 (Good)
TCP SYN, [33575] -> [23]
Source port: [33575] Destination port: [23] Telnet
Source Port : 33575
Destination Port : 23
Sequence number: 3041300016
Acknowledgement: 0
TCP flags: SYN Header length: [7]*4 bytes = 28 bytes
0000.... ........ : TCP header length (Data Offset) [7]*4 bytes =
28 bytes
....0001 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field not significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......1 : Expect more data from sender
Window: 65535
Checksum: 11C2h (GOOD),
Urgent Pointer: 0 - not significant
Options:
Option #1: 2 = Maximum Segment Size
Kind: 2 = Maximum Segment Size
Length: 4
Maximum Segment Length: 1460
Option #2: 1 = No-Operation
Option #3: 1 = No-Operation
Option #4: 4 = SACK Permitted
Kind: 4 = Maximum Segment Size
Length: 2
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 3041300016 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 7: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 66
Time: 10h:49m 55.995 913s, Diff. time: 6.008560
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 48
ID: 0xA477
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xABA8 (Good)
TCP SYN, [33575] -> [23]
Source port: [33575] Destination port: [23] Telnet
Source Port : 33575
Destination Port : 23
Sequence number: 3041300016
Acknowledgement: 0
TCP flags: SYN Header length: [7]*4 bytes = 28 bytes
0000.... ........ : TCP header length (Data Offset) [7]*4 bytes =
28 bytes
....0001 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field not significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......1 : Expect more data from sender
Window: 65535
Checksum: 11C2h (GOOD),
Urgent Pointer: 0 - not significant
Options:
Option #1: 2 = Maximum Segment Size
Kind: 2 = Maximum Segment Size
Length: 4
Maximum Segment Length: 1460
Option #2: 1 = No-Operation
Option #3: 1 = No-Operation
Option #4: 4 = SACK Permitted
Kind: 4 = Maximum Segment Size
Length: 2
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 3041300016 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 8: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 66
Time: 10h:50m 15.512 710s, Diff. time: 19.516797
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 48
ID: 0xA572
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xAAAD (Good)
TCP SYN, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754101
Acknowledgement: 0
TCP flags: SYN Header length: [7]*4 bytes = 28 bytes
0000.... ........ : TCP header length (Data Offset) [7]*4 bytes =
28 bytes
....0001 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field not significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......1 : Expect more data from sender
Window: 65535
Checksum: D121h (GOOD),
Urgent Pointer: 0 - not significant
Options:
Option #1: 2 = Maximum Segment Size
Kind: 2 = Maximum Segment Size
Length: 4
Maximum Segment Length: 1460
Option #2: 1 = No-Operation
Option #3: 1 = No-Operation
Option #4: 4 = SACK Permitted
Kind: 4 = Maximum Segment Size
Length: 2
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 1054754101 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 9: 00:C0:73:09:69:D0 -> 00:01:03:E0:F8:13
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:50m 15.548 840s, Diff. time: 0.036130
Date: Thu Dec 15 2005
IP, 66.133.129.70 -> 64.208.166.12
Source IP: 66.133.129.70, Destination IP: 64.208.166.12
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xA572
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 50
PROTOCOL: [6] TCP
Header checksum: 0xF8B5 (Good)
TCP SYN ACK, [25] -> [33577]
Source port: [25] SMTP Destination port: [33577]
Source Port : 25
Destination Port : 33577
Sequence number: 56166500
Acknowledgement: 1054754102
TCP flags: SYN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......0 : Expect more data from sender
Window: 0
Checksum: F216h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 56166500 (Calculated from Sequence Number
and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 10: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:50m 15.549 032s, Diff. time: 0.000192
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xA577
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xAAB0 (Good)
TCP ACK, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754102
Acknowledgement: 56166501
TCP flags: ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: F217h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 1054754102 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 11: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:52m 52.948 520s, Diff. time: 157.399488
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xAD89
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xA29D (Good)
TCP PSH ACK, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754102
Acknowledgement: 56166501
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: EF0Eh (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 1054754103 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 12: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:52m 58.856 950s, Diff. time: 5.908430
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xADB2
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xA274 (Good)
TCP PSH ACK, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754102
Acknowledgement: 56166501
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: EF0Eh (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 1054754103 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 13: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 10.874 084s, Diff. time: 12.017134
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xAE70
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xA1B6 (Good)
TCP PSH ACK, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754102
Acknowledgement: 56166501
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: EF0Eh (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 1054754103 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 14: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 22.791 072s, Diff. time: 11.916988
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xAFC5
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0xA062 (Good)
TCP FIN ACK, [33468] -> [25]
Source port: [33468] Destination port: [25] SMTP
Source Port : 33468
Destination Port : 25
Sequence number: 2610397666
Acknowledgement: 826924459
TCP flags: FIN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : No more data from sender
Window: 65535
Checksum: 55E7h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2610397666 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 15: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 28.799 629s, Diff. time: 6.008557
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xB119
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9F0E (Good)
TCP FIN ACK, [33468] -> [25]
Source port: [33468] Destination port: [25] SMTP
Source Port : 33468
Destination Port : 25
Sequence number: 2610397666
Acknowledgement: 826924459
TCP flags: FIN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : No more data from sender
Window: 65535
Checksum: 55E7h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2610397666 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 16: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 34.908 350s, Diff. time: 6.108721
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB180
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9EA6 (Good)
TCP PSH ACK, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754102
Acknowledgement: 56166501
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: EF0Eh (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 1054754103 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 17: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 40.816 742s, Diff. time: 5.908392
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xB1D4
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9E53 (Good)
TCP FIN ACK, [33468] -> [25]
Source port: [33468] Destination port: [25] SMTP
Source Port : 33468
Destination Port : 25
Sequence number: 2610397666
Acknowledgement: 826924459
TCP flags: FIN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : No more data from sender
Window: 65535
Checksum: 55E7h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2610397666 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 18: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 66
Time: 10h:53m 45.788 148s, Diff. time: 4.971406
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 48
ID: 0xB20E
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9E11 (Good)
TCP SYN, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331066
Acknowledgement: 0
TCP flags: SYN Header length: [7]*4 bytes = 28 bytes
0000.... ........ : TCP header length (Data Offset) [7]*4 bytes =
28 bytes
....0001 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field not significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......1 : Expect more data from sender
Window: 65535
Checksum: 5F4Dh (GOOD),
Urgent Pointer: 0 - not significant
Options:
Option #1: 2 = Maximum Segment Size
Kind: 2 = Maximum Segment Size
Length: 4
Maximum Segment Length: 1460
Option #2: 1 = No-Operation
Option #3: 1 = No-Operation
Option #4: 4 = SACK Permitted
Kind: 4 = Maximum Segment Size
Length: 2
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 3509331066 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 19: 00:C0:73:09:69:D0 -> 00:01:03:E0:F8:13
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 45.819 952s, Diff. time: 0.031804
Date: Thu Dec 15 2005
IP, 66.133.129.70 -> 64.208.166.12
Source IP: 66.133.129.70, Destination IP: 64.208.166.12
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xB20E
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 50
PROTOCOL: [6] TCP
Header checksum: 0xEC19 (Good)
TCP SYN ACK, [25] -> [33642]
Source port: [25] SMTP Destination port: [33642]
Source Port : 25
Destination Port : 33642
Sequence number: 2307391284
Acknowledgement: 3509331067
TCP flags: SYN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......0 : Expect more data from sender
Window: 0
Checksum: 0343h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2307391284 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 20: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 45.820 147s, Diff. time: 0.000195
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xB20F
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9E18 (Good)
TCP ACK, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331067
Acknowledgement: 2307391285
TCP flags: ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: 0344h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 3509331067 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 21: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:53m 56.038 450s, Diff. time: 10.218303
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB2A8
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9D7E (Good)
TCP PSH ACK, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331067
Acknowledgement: 2307391285
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: 9B3Ah (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 3509331068 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 68 h
---------------------------------------------------------------
---------------------------------------------------------------
Packet 22: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:54m 02.047 010s, Diff. time: 6.008560
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB307
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9D1F (Good)
TCP PSH ACK, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331067
Acknowledgement: 2307391285
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: 9B3Ah (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 3509331068 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 68 h
---------------------------------------------------------------
---------------------------------------------------------------
Packet 23: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:54m 04.750 776s, Diff. time: 2.703766
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xB30E
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9D19 (Good)
TCP FIN ACK, [33468] -> [25]
Source port: [33468] Destination port: [25] SMTP
Source Port : 33468
Destination Port : 25
Sequence number: 2610397666
Acknowledgement: 826924459
TCP flags: FIN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : No more data from sender
Window: 65535
Checksum: 55E7h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2610397666 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 24: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:54m 13.964 010s, Diff. time: 9.213234
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB366
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9CC0 (Good)
TCP PSH ACK, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331067
Acknowledgement: 2307391285
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: 9B3Ah (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 3509331068 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 68 h
---------------------------------------------------------------
---------------------------------------------------------------
Packet 25: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:54m 22.876 696s, Diff. time: 8.912686
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB43D
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9BE9 (Good)
TCP PSH ACK, [33577] -> [25]
Source port: [33577] Destination port: [25] SMTP
Source Port : 33577
Destination Port : 25
Sequence number: 1054754102
Acknowledgement: 56166501
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: EF0Eh (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 1054754103 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 26: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:54m 37.998 266s, Diff. time: 15.121570
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB47E
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9BA8 (Good)
TCP PSH ACK, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331067
Acknowledgement: 2307391285
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: 9B3Ah (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 3509331068 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 68 h
---------------------------------------------------------------
---------------------------------------------------------------
Packet 27: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:54m 52.819 350s, Diff. time: 14.821084
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xB507
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x9B20 (Good)
TCP FIN ACK, [33468] -> [25]
Source port: [33468] Destination port: [25] SMTP
Source Port : 33468
Destination Port : 25
Sequence number: 2610397666
Acknowledgement: 826924459
TCP flags: FIN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : No more data from sender
Window: 65535
Checksum: 55E7h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2610397666 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 28: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:55m 25.966 630s, Diff. time: 33.147280
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xB62A
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x99FC (Good)
TCP PSH ACK, [33642] -> [25]
Source port: [33642] Destination port: [25] SMTP
Source Port : 33642
Destination Port : 25
Sequence number: 3509331067
Acknowledgement: 2307391285
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: 9B3Ah (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 3509331068 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 68 h
---------------------------------------------------------------
---------------------------------------------------------------
Packet 29: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 66
Time: 10h:58m 10.313 305s, Diff. time: 164.346675
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 48
ID: 0xC144
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x8EDB (Good)
TCP SYN, [33715] -> [25]
Source port: [33715] Destination port: [25] SMTP
Source Port : 33715
Destination Port : 25
Sequence number: 2881607637
Acknowledgement: 0
TCP flags: SYN Header length: [7]*4 bytes = 28 bytes
0000.... ........ : TCP header length (Data Offset) [7]*4 bytes =
28 bytes
....0001 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field not significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......1 : Expect more data from sender
Window: 65535
Checksum: D113h (GOOD),
Urgent Pointer: 0 - not significant
Options:
Option #1: 2 = Maximum Segment Size
Kind: 2 = Maximum Segment Size
Length: 4
Maximum Segment Length: 1460
Option #2: 1 = No-Operation
Option #3: 1 = No-Operation
Option #4: 4 = SACK Permitted
Kind: 4 = Maximum Segment Size
Length: 2
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2881607637 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 30: 00:C0:73:09:69:D0 -> 00:01:03:E0:F8:13
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:58m 10.349 025s, Diff. time: 0.035720
Date: Thu Dec 15 2005
IP, 66.133.129.70 -> 64.208.166.12
Source IP: 66.133.129.70, Destination IP: 64.208.166.12
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xC144
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 50
PROTOCOL: [6] TCP
Header checksum: 0xDCE3 (Good)
TCP SYN ACK, [25] -> [33715]
Source port: [25] SMTP Destination port: [33715]
Source Port : 25
Destination Port : 33715
Sequence number: 3190641774
Acknowledgement: 2881607638
TCP flags: SYN ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers ON
........ .......0 : Expect more data from sender
Window: 0
Checksum: EB29h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 3190641774 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 31: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:58m 10.349 256s, Diff. time: 0.000231
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 40
ID: 0xC145
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x8EE2 (Good)
TCP ACK, [33715] -> [25]
Source port: [33715] Destination port: [25] SMTP
Source Port : 33715
Destination Port : 25
Sequence number: 2881607638
Acknowledgement: 3190641775
TCP flags: ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function OFF
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: EB2Ah (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 0 (calculated from Data Offset)
Expected Acknowledgement: 2881607638 (Calculated from Sequence
Number and Data Length)
---------------------------------------------------------------
---------------------------------------------------------------
Packet 32: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:58m 21.516 861s, Diff. time: 11.167605
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xC2B8
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x8D6E (Good)
TCP PSH ACK, [33715] -> [25]
Source port: [33715] Destination port: [25] SMTP
Source Port : 33715
Destination Port : 25
Sequence number: 2881607638
Acknowledgement: 3190641775
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: E821h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 2881607639 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 33: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:58m 27.525 426s, Diff. time: 6.008565
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xC414
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x8C12 (Good)
TCP PSH ACK, [33715] -> [25]
Source port: [33715] Destination port: [25] SMTP
Source Port : 33715
Destination Port : 25
Sequence number: 2881607638
Acknowledgement: 3190641775
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: E821h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 2881607639 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 34: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:58m 39.542 517s, Diff. time: 12.017091
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xC4B0
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x8B76 (Good)
TCP PSH ACK, [33715] -> [25]
Source port: [33715] Destination port: [25] SMTP
Source Port : 33715
Destination Port : 25
Sequence number: 2881607638
Acknowledgement: 3190641775
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: E821h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 2881607639 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Packet 35: 00:01:03:E0:F8:13 -> 00:C0:73:09:69:D0
Network: Ethernet, Frame type: ETHERTYPE, Protocol: [0800] IP
Frame network size (including 4 bytes CRC): 64
Time: 10h:59m 03.476 623s, Diff. time: 23.934106
Date: Thu Dec 15 2005
IP, 64.208.166.12 -> 66.133.129.70
Source IP: 64.208.166.12, Destination IP: 66.133.129.70
Version: 04, IP header length: [5]*4 bytes = 20 bytes
Service type: 0: Precedence: 0, Delay: Norm, Throug: Norm,
Reliab: Norm
Total IP length: 41
ID: 0xC5A0
Fragment flags: [10] - don't fragment - last fragment
Fragment offset: 0
Time to live: 128
PROTOCOL: [6] TCP
Header checksum: 0x8A86 (Good)
TCP PSH ACK, [33715] -> [25]
Source port: [33715] Destination port: [25] SMTP
Source Port : 33715
Destination Port : 25
Sequence number: 2881607638
Acknowledgement: 3190641775
TCP flags: PSH ACK Header length: [5]*4 bytes = 20 bytes
0000.... ........ : TCP header length (Data Offset) [5]*4 bytes =
20 bytes
....0000 00...... : Reserved
........ ..0..... : Urgent pointer field not significant
........ ...0.... : Acknowledgment field significant
........ ....0... : Push function ON
........ .....0.. : Reset the connection OFF
........ ......0. : Synchronize sequence numbers OFF
........ .......0 : Expect more data from sender
Window: 65535
Checksum: E821h (GOOD),
Urgent Pointer: 0 - not significant
TCP data length: 1 (calculated from Data Offset)
Expected Acknowledgement: 2881607639 (Calculated from Sequence
Number and Data Length)
SMTP Section: 1 bytes
SMTP Data
0000 03 .
---------------------------------------------------------------
---------------------------------------------------------------
Motley Crue wrote:
> No it doesn't we are on the 64.x.x.x subnet and the server in question is on
> the 66.x.x.x subnet.
>
> "Don Wallace" <DonWallace@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> news:2FE47C7F-593C-4A47-828A-B9672D4214A0@xxxxxxxxxxxxxxxx
> > Check the IP address for MX.Frontier.Net and see if it conflicts with your
> > internal IP addressing.
> >
> > Regards
> >
> > Don Wallace
> >
> > "Motley Crue" wrote:
> >
> >> I have currently having a problem send e-mail to 1 e-mail server. The
> >> server
> >> in question is frontiernet.net. I do not have any other problems with any
> >> other mailservers. What appears to be happening is that when our server
> >> tries to send e-mail to their server it will make the initial connection
> >> but
> >> then times out after 2 minutes of trying. One thing that the people at
> >> frontiernet.net had me do was try to telnet to mx.frontiernet.net on port
> >> 25. I could not do that from my mailserver or any other server on my LAN.
> >> If
> >> I did it directly from our firewall it would work. I can telnet to port
> >> 25
> >> on other mailservers from our mailserver so I know that it is passing
> >> smtp
> >> to our mailsever just fine. What I cannot figure out is what is unique
> >> about
> >> this one particular mailserver that doesn't allow it to communicate
> >> through
> >> our firewall. Would it be possible for someone to try this and see what
> >> the
> >> heck the server is trying to do? I would greatly appreciate it if someone
> >> could help with this.
> >>
> >> The mailserver in question is "mx.frontiernet.net"
> >>
> >>
> >>
.
- References:
- Problem sending E-mail to 1 server
- From: Motley Crue
- Re: Problem sending E-mail to 1 server
- From: Motley Crue
- Problem sending E-mail to 1 server
- Prev by Date: Re: best practices for mobile/laptop users
- Next by Date: Re: Exchange SP2 and Firewall Timeout
- Previous by thread: Re: Problem sending E-mail to 1 server
- Next by thread: Re: Exchange 2003 - Routing Recalculate
- Index(es):
Relevant Pages
|