Re: Tracking source of ICMP packet

From: Clifton, Pablo (Pablo.Clifton@BCBSFL.COM)
Date: Wed Sep 24 2003 - 14:40:32 EDT


Ed-

do you have lsof?
you might find this helps:

        lsof -i @<destination hostname or ip address>

if you know the port number:

        lsof -i :<port number>

-pc

---
Pablo Clifton
UNIX Technical Services
-----Original Message-----
From: Pugliese, Edward [mailto:s11018@SLK.COM]
Sent: Tuesday, September 23, 2003 3:15 PM
To: aix-l@Princeton.EDU
Subject: Tracking source of ICMP packet
I have tracked down the source of some pesky ICMP packets to a certain host.
I have confirmed it is the specific host by running "iptrace" and seeing the
specific IP address for the source and destination that is in question for
the "ECHO REQUEST".  What I can not figure out is how to backtrack to the
process that is generating the ICMP packets.   Any assistance in how I might
do this would be appreciated.
Thanks,
Ed
Blue Cross Blue Shield of Florida, Inc., and its subsidiary and affiliate companies are not responsible for errors or omissions in this e-mail message. Any personal comments made in this e-mail do not reflect the views of Blue Cross Blue Shield of Florida, Inc.  The information contained in this document may be confidential and intended solely for the use of the individual or entity to whom it is addressed.  This document may contain material that is privileged or protected from disclosure under applicable law.  If you are not the intended recipient or the individual responsible for delivering to the intended recipient, please (1) be advised that any use, dissemination, forwarding, or copying of this document IS STRICTLY PROHIBITED; and (2) notify sender immediately by telephone and destroy the document. THANK YOU.


This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 22:17:14 EDT