tcpdump mailing list archives

Re: Email Content Extraction From payload


From: Shameem Ahamed <shameem.ahamed () hotmail com>
Date: Tue, 7 Apr 2009 10:06:50 +0530


Hi All,

Thanks for all the reply.

I am now getting some output in the payload (I am not capturing SMTP data, only http data).  I think, my earlier issue 
was with the pcap.


Now i am getting almost all the details i send through webmail in my program.

But the curois thing is, i still see some binary data in the payload.

For Example:  Just after the HTTP session started, after connecting to the host and setting up cookies , i can see some 
binary data. 

What it can be?  Any way to find out those details also ?.


Thanks for all your support.

Regards,
Shameem 

Date: Fri, 3 Apr 2009 12:14:14 -0700
From: lenm () yahoo com
Subject: Re: [tcpdump-workers] Email Content Extraction From payload
To: tcpdump-workers () lists tcpdump org


At about Friday, April 3, 2009 4:01:05 AM Shameem Ahamed <shameem.ahamed () hotmail com> wrote:
...
In that one also,  i have tried to print the data part in a file using the callback function and all the data was in 
binary format.
...

If you're seeing binary during SMTP DATA and it's not in a binary
MIME part/attachment, then it's likely that the SMTP dialog in 
question is using TLS.  If that's the case, you should consider
capturing the traffic on the MTA at one end of the dialog.

Len


      
-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.

_________________________________________________________________
How fun is this? IMing with Windows Live Messenger just got better.
http://www.microsoft.com/india/windows/windowslive/messenger.aspx-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.


Current thread: