[root@GOLNET ~]# tcpdump -i eth0
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on eth0, link-type EN10MB (Ethernet), capture size 96 bytes
08:47:19.565709 IP 80-239-151-55.customer.teliacarrier.com.http > .168.30.5.34713: . 1658913759:1658915207(1448) ack 3822106965 win 56 <nop,nop,timestamp 404511179 79005210>
08:47:19.566167 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 37436+ PTR? 5.30.168.192.in-addr.arpa. (43)
08:47:19.613986 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 1448:2896(1448) ack 1 win 56 <nop,nop,timestamp 404511179 79005210>
08:47:19.618964 IP ns3.dci.ir.domain > 192.168.30.5.32777: 37436 NXDomain* 0/1/0 (110)
08:47:19.619066 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 557+ PTR? 55.151.239.80.in-addr.arpa. (44)
08:47:19.666771 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 2896:4344(1448) ack 1 win 56 <nop,nop,timestamp 404511193 79005354>
08:47:19.666784 IP 192.168.30.5.34713 > 80-239-151-55.customer.teliacarrier.com.http: . ack 4344 win 527 <nop,nop,timestamp 79005857 404511179>
08:47:19.675578 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 3825815881 win 8760
08:47:19.675598 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 7301:8761(1460) ack 0 win 6457
08:47:19.714790 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 4344:5792(1448) ack 1 win 56 <nop,nop,timestamp 404511193 79005354>
08:47:19.762806 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 5792:7240(1448) ack 1 win 56 <nop,nop,timestamp 404511193 79005354>
08:47:19.769916 IP ns3.dci.ir.domain > 192.168.30.5.32777: 557 1/2/2 (173)
08:47:19.770068 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 38855+ PTR? 106.127.218.217.in-addr.arpa. (46)
08:47:19.801269 IP ns3.dci.ir.domain > 192.168.30.5.32777: 38855* 1/2/2 (138)
08:47:19.802770 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 15547+ PTR? 72.30.168.192.in-addr.arpa. (44)
08:47:19.818609 IP 192.168.30.5.34713 > 80-239-151-55.customer.teliacarrier.com.http: . ack 7240 win 487 <nop,nop,timestamp 79006009 404511193>
08:47:19.833060 IP ns3.dci.ir.domain > 192.168.30.5.32777: 15547 NXDomain* 0/1/0 (111)
08:47:19.878466 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 1461 win 8760
08:47:19.878491 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 8761:10221(1460) ack 0 win 6457
08:47:20.154985 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 7240:8688(1448) ack 1 win 56 <nop,nop,timestamp 404511244 79005857>
08:47:20.185638 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 2921 win 8760
08:47:20.185664 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 10221:11681(1460) ack 0 win 6457
08:47:20.197837 IP 192.168.30.28.ddt > sip20.voice.re2.yahoo.com.sip-tls: P 235958330:235958423(93) ack 692770176 win 8760
08:47:20.197859 IP 192.168.30.5.ddt > sip20.voice.re2.yahoo.com.sip-tls: P 235958330:235958423(93) ack 692770176 win 8760
08:47:20.197939 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 63278+ PTR? 165.233.142.68.in-addr.arpa. (45)
08:47:20.203000 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 8688:10136(1448) ack 1 win 56 <nop,nop,timestamp 404511244 79005857>
08:47:20.251103 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 10136:11584(1448) ack 1 win 56 <nop,nop,timestamp 404511244 79005857>
08:47:20.299293 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 11584:13032(1448) ack 1 win 56 <nop,nop,timestamp 404511244 79005857>
08:47:20.347307 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 13032:14480(1448) ack 1 win 56 <nop,nop,timestamp 404511244 79005857>
08:47:20.347322 IP 192.168.30.5.34713 > 80-239-151-55.customer.teliacarrier.com.http: . ack 14480 win 387 <nop,nop,timestamp 79006538 404511244>
08:47:20.378180 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 4381 win 8760
08:47:20.378199 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 11681:13141(1460) ack 0 win 6457
08:47:20.395323 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 14480:15928(1448) ack 1 win 56 <nop,nop,timestamp 404511244 79005857>
08:47:20.405093 IP ns3.dci.ir.domain > 192.168.30.5.32777: 63278 1/5/5 (254)
08:47:20.405198 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 960+ PTR? 28.30.168.192.in-addr.arpa. (44)
08:47:20.415575 IP 192.168.30.28.murray > 213.254.200.16.http: P 3567455730:3567455967(237) ack 154400390 win 8760
08:47:20.415592 IP 213.254.200.16.http > 192.168.30.28.murray: . ack 237 win 21440
08:47:20.416089 IP 192.168.30.5.60034 > 213.254.200.19.http: P 160838315:160838644(329) ack 2278202037 win 1002 <nop,nop,timestamp 79006607 1514501701>
08:47:20.435632 IP ns3.dci.ir.domain > 192.168.30.5.32777: 960 NXDomain* 0/1/0 (111)
08:47:20.435895 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 7919+ PTR? 16.200.254.213.in-addr.arpa. (45)
08:47:20.466281 IP ns3.dci.ir.domain > 192.168.30.5.32777: 7919 NXDomain 0/1/0 (100)
08:47:20.466406 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 40176+ PTR? 19.200.254.213.in-addr.arpa. (45)
08:47:20.494468 IP 192.168.30.5.34713 > 80-239-151-55.customer.teliacarrier.com.http: . ack 15928 win 367 <nop,nop,timestamp 79006685 404511244>
08:47:20.496405 IP ns3.dci.ir.domain > 192.168.30.5.32777: 40176 NXDomain 0/1/0 (100)
08:47:20.685034 IP sip20.voice.re2.yahoo.com.sip-tls > 192.168.30.5.ddt: . ack 93 win 65535
08:47:20.685053 IP sip20.voice.re2.yahoo.com.sip-tls > 192.168.30.28.ddt: . ack 93 win 65535
08:47:20.688278 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 5841 win 8760
08:47:20.688301 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 13141:14601(1460) ack 0 win 6457
08:47:20.756424 IP 192.168.30.5.dls-monitor > 217.219.191.17.dls-monitor: UDP, length 52
08:47:20.757495 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 49766+ PTR? 17.191.219.217.in-addr.arpa. (45)
08:47:20.759173 IP 217.219.191.17.dls-monitor > 192.168.30.5.dls-monitor: UDP, length 64
08:47:20.830932 IP 213.254.200.19.http > 192.168.30.5.60034: . 1:1449(1448) ack 329 win 16080 <nop,nop,timestamp 1514513304 79006607>
08:47:20.830960 IP 192.168.30.5.60034 > 213.254.200.19.http: . ack 1449 win 1002 <nop,nop,timestamp 79007022 1514513304>
08:47:20.831186 IP 213.254.200.16.http > 192.168.30.28.murray: . 1:1461(1460) ack 237 win 21440
08:47:20.831199 IP 213.254.200.16.http > 192.168.30.28.murray: P 1461:1515(54) ack 237 win 21440
08:47:20.878680 IP 213.254.200.19.http > 192.168.30.5.60034: . 1449:2897(1448) ack 329 win 16080 <nop,nop,timestamp 1514513304 79006607>
08:47:20.878690 IP 192.168.30.5.60034 > 213.254.200.19.http: . ack 2897 win 1002 <nop,nop,timestamp 79007069 1514513304>
08:47:20.878742 IP 213.254.200.16.http > 192.168.30.28.murray: P 1515:2963(1448) ack 237 win 21440
08:47:20.926348 IP 213.254.200.19.http > 192.168.30.5.60034: P 2897:4341(1444) ack 329 win 16080 <nop,nop,timestamp 1514513304 79006607>
08:47:20.926358 IP 192.168.30.5.60034 > 213.254.200.19.http: . ack 4341 win 1002 <nop,nop,timestamp 79007117 1514513304>
08:47:20.931150 IP ns3.dci.ir.domain > 192.168.30.5.32777: 49766 NXDomain 0/1/0 (100)
08:47:20.978781 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 15928:17376(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:20.985623 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 7301 win 8760
08:47:20.985641 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 14601:16061(1460) ack 0 win 6457
08:47:21.026972 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 17376:18824(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:21.074990 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 18824:20272(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:21.123180 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 20272:21720(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:21.171285 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 21720:23168(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:21.171305 IP 192.168.30.5.34713 > 80-239-151-55.customer.teliacarrier.com.http: . ack 23168 win 267 <nop,nop,timestamp 79007362 404511312>
08:47:21.193411 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 8761 win 8760
08:47:21.193429 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 16061:17521(1460) ack 0 win 6457
08:47:21.219300 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 23168:24616(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:21.267579 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 24616:26064(1448) ack 1 win 56 <nop,nop,timestamp 404511312 79006538>
08:47:21.318293 IP 192.168.30.5.34713 > 80-239-151-55.customer.teliacarrier.com.http: . ack 26064 win 226 <nop,nop,timestamp 79007509 404511312>
08:47:21.347612 IP 192.168.30.28.murray > 213.254.200.16.http: . ack 1515 win 8760
08:47:21.347635 IP 213.254.200.16.http > 192.168.30.28.murray: P 2963:4407(1444) ack 237 win 21440
08:47:21.474728 arp who-has 217.219.191.23 tell 217.219.191.17
08:47:21.474839 IP 192.168.30.5.32777 > ns3.dci.ir.domain: 15910+ PTR? 23.191.219.217.in-addr.arpa. (45)
08:47:21.491032 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 10221 win 8760
08:47:21.491050 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 17521:18981(1460) ack 0 win 6457
08:47:21.504778 IP ns3.dci.ir.domain > 192.168.30.5.32777: 15910 NXDomain 0/1/0 (100)
08:47:21.659360 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 26064:27512(1448) ack 1 win 56 <nop,nop,timestamp 404511394 79007362>
08:47:21.688274 IP 192.168.30.72.cops-tls > 80-239-151-55.customer.teliacarrier.com.http: . ack 11681 win 8760
08:47:21.688302 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.72.cops-tls: . 18981:20441(1460) ack 0 win 6457
08:47:21.707378 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 27512:28960(1448) ack 1 win 56 <nop,nop,timestamp 404511394 79007362>
08:47:21.755652 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 28960:30408(1448) ack 1 win 56 <nop,nop,timestamp 404511394 79007362>
08:47:21.803757 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 30408:31856(1448) ack 1 win 56 <nop,nop,timestamp 404511394 79007362>
08:47:21.805505 IP 192.168.30.28.murray > 213.254.200.16.http: . ack 2963 win 7312
08:47:21.851948 IP 80-239-151-55.customer.teliacarrier.com.http > 192.168.30.5.34713: . 31856:33304(1448) ack 1 win 56 <nop,nop,timestamp 404511394 79007362>
3