IP packet header visualization software
DES
3des at inx.su
Thu Nov 2 19:35:46 UTC 2017
thank you for the response Kevin and Bakul,
but neither tcptrace nor ethereal/wireshark is what I'm looking for. As
I said, the application I was using was drawing single IP packet header
similar to what is presented in RFC791 -
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
|Version| IHL |Type of Service| Total Length |
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
| Identification |Flags| Fragment Offset |
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
| Time to Live | Protocol | Header Checksum |
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
| Source Address |
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
| Destination Address |
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
| Options | Padding |
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
But a) graphically with colors, b) with actual packet/header data from
the captured IP packet.
Actual result looked similar to this picture -
https://www.ibm.com/support/knowledgecenter/en/ssw_aix_71/com.ibm.aix.networkcomm/figures/comma35.jpg
thank you
3des
On 02.11.2017 02:38, Kevin Oberman wrote:
> On Wed, Nov 1, 2017 at 2:46 PM, DES <3des at inx.su <mailto:3des at inx.su>>
> wrote:
>
> Hello FreeBSD-Net,
>
> does anybody remember, around year 2004, there was a software
> application available (either as port, or package). Unfortunately
> I do not recall the application name and I'm not able to find it
> again, although I've reviewed the Ports collection from year 2005
> which I have on 3 DVDs. I do not remember if the application
> captured data from the network interface by itself, or used
> tcpdump output, that actually doesn't matter. What matters is that
> this app draw a picture of the selected IP packet's header,
> similar to the one in RFC791 at page 11, chapter "3.1. Internet
> Header Format". The picture drawn was minimalistic and in colors
> (green, yellow), and it showed the field values from the actual
> capture. I've ran it under TWM, and it looked close to that one,
> but showing captured values instead of (or along with) field names -
>
> Appreciate if anybody remembers that application by a chance and
> could tell its name.
>
> thank you
>
> 3des
>
>
> tcptrace? I have not used it since I retired, but I think it was
> similar to what you are looking for. Its output is just text. It used
> an external tool to implement the plots, xplot. xplot died back on
> gcc-3.3 and I have no idea what its current status is, but I fear it's
> abandoned, xpolt.org <http://xpolt.org> still is alive, though.
>
More information about the freebsd-net
mailing list