Explain how traceroute, ping, and tcpdump work and what
they are used for?
Answers were Sorted based on User's Feedback
Answer / abhilash
Traceroute;
Traceroute works by increasing the "time-to-live" value of
each successive batch of packets sent. The first three
packets sent have a time-to-live (TTL) value of one
(implying that they are not forwarded by the next router and
make only a single hop). The next three packets have a TTL
value of 2, and so on. When a packet passes through a host,
normally the host decrements the TTL value by one, and
forwards the packet to the next host. When a packet with a
TTL of one reaches a host, the host discards the packet and
sends an ICMP time exceeded (type 11) packet to the sender.
The traceroute utility uses these returning packets to
produce a list of hosts that the packets have traversed en
route to the destination. The three timestamp values
returned for each host along the path are the delay (aka
latency) values typically in milliseconds (ms) for each
packet in the batch. If a packet does not return within the
expected timeout window, a star (asterisk) is traditionally
printed. Traceroute may not list the real hosts. It
indicates that the first host is at one hop, the second host
at two hops, etc. IP does not guarantee that all the packets
take the same route. Also note that if the host at hop
number N does not reply, the hop will be skipped in the output.
Ping:
It works by sending ICMP “echo request” packets to the
target host and listening for ICMP “echo response” replies.
Ping estimates the round-trip time, generally in
milliseconds, and records any packet loss, and prints a
statistical summary when finished.
| Is This Answer Correct ? | 20 Yes | 2 No |
Answer / sachin vaish
traceroute, ping, and tcpdump test the connectivity of the
detination in question by sending icmp packets and checking
the responce(TTL) which is the routers encountered in the
path.They are used to check the connectivity and the
distance to the destination
| Is This Answer Correct ? | 13 Yes | 2 No |
Answer / malhari
ping is a command used to check the connectivity between source & destination.
tracert is a command used to track the route followed by packet to reach towards destination & time required to reach the destination.
TCPDUMP is different
its a NETWORK PACKET ANALYZER. tcpdump uses libpacp/winpcap
to capture data and uses it extensive protocol definitions
build inside to analyze the captured packets. Its mainly
used to debug the protocol of the captured packet which in
turn reveals the network traffic characterstics.
| Is This Answer Correct ? | 11 Yes | 1 No |
Answer / mayur
traceroute and ping work on the ICMP protocol and are used
for network connectivity testing. but TCPDUMP is different
its a NETWORK PACKET ANALYZER. tcpdump uses libpacp/winpcap
to capture data and uses it extensive protocol definitions
build inside to analyze the captured packets. Its mainly
used to debug the protocol of the captured packet which in
turn reveals the network traffic characterstics.
| Is This Answer Correct ? | 8 Yes | 3 No |
Which command will mount /usr/local from server called machine1?
Which command will remove all entries from the routing table ?
what is vcs seeding & jeopardy & purpose?
Which command will eanble the hme0 interface to send and receive packets ?
True/False: DNS gives you the ability to prevent unauthorized transfers.
Which three types of gateways can be defined in the /etc/gateways file ?
1.what is the opportunity in MCSE and CCNA ?
How maximum networks and hosts are in a class a, b and c network?
What is the importance of authentication?
Describe point to point link?
What does a secondary dhcp server do when the primary server is unable to respond ?
How do you distinguish a DNS problem from a network problem?
11 Answers Swirl Infosystems, Wipro,