Situation: Problematic Behavior From The Customer's Perspective
Situation: Problematic Behavior From The Customer's Perspective
Assessment:
Technical Severity:P2
Trouble shooting:
Below is pcap when testes ( date: Jan 10 and time is 3:22pm PST)
We have only one ISP
Tcpdump:
8:30:13.928958 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:13.928960 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:13.929210 Port1, IN: In b4:96:91:a5:99:90 ethertype IPv4 (0x0800), length 96:
192.168.7.111.14907 > 24.84.237.55.32995: UDP, length 52
18:30:13.996933 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996939 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996944 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996945 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996949 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996949 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996952 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996953 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 96:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 52
18:30:13.996975 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002845 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002848 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002860 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002861 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002897 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002900 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002936 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.002939 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.003079 Port1, IN: In b4:96:91:a5:99:90 ethertype IPv4 (0x0800), length 96:
192.168.7.111.14907 > 24.84.237.55.32995: UDP, length 52
18:30:14.003148 Port1, IN: In b4:96:91:a5:99:90 ethertype IPv4 (0x0800), length 96:
192.168.7.111.14907 > 24.84.237.55.32995: UDP, length 52
18:30:14.003765 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.003767 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.003903 Port1, IN: In b4:96:91:a5:99:90 ethertype IPv4 (0x0800), length 96:
192.168.7.111.14907 > 24.84.237.55.32995: UDP, length 52
18:30:14.004580 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.004582 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.005606 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.005609 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.005626 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.005627 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.005772 Port1, IN: In b4:96:91:a5:99:90 ethertype IPv4 (0x0800), length 96:
192.168.7.111.14907 > 24.84.237.55.32995: UDP, length 52
18:30:14.006325 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.006327 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.006488 Port1, IN: In b4:96:91:a5:99:90 ethertype IPv4 (0x0800), length 96:
192.168.7.111.14907 > 24.84.237.55.32995: UDP, length 52
18:30:14.008048 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.008051 mv-pcimux0, OUT: Out 00:01:00:00:50:46 ethertype IPv4 (0x0800), length 149:
24.84.237.55.32995 > 192.168.7.111.14907: UDP, length 105
18:30:14.008054 Port1, OUT: Out 7c:5a:1c:b4:6f:b0 ethertype IPv4
Conntrack:
Plan:
Is the issue resolved- No
Plan of Action (POA) for next interaction
As discussed with Joshua without Sophos end point agent we are able to access the
application
The application is not working on server on which he is using the end point agent
Customer wants to check on end point side
Transferring the call to Geoffrey Leach as discussed on teams