I did find out how to dump fancier output which I think someone wanted. 

tcpdump -AXXr /opt/mail/dump10.txt

17:08:23.323379 IP server.workflowproducts.com.smtp > 
mx-ecom.netflix.com.29698: Flags [.], seq 1:47, ack 1, win 65535, length 46
        0x0000:  e091 f53f 1307 d49a 20fd a988 0800 4500  ...?..........E.
        0x0010:  0056 79e8 4000 4006 0000 c0a8 2c04 d04b  .Vy.@.@.....,..K
        0x0020:  4cfc 0019 7402 284e 5605 3da6 d8f4 5010  L...t.(NV.=...P.
        0x0030:  ffff 0a3d 0000 3232 3020 7365 7276 6572  ...=..220.server
        0x0040:  2e77 6f72 6b66 6c6f 7770 726f 6475 6374  .workflowproduct
        0x0050:  732e 636f 6d20 4553 4d54 5020 506f 7374  s.com.ESMTP.Post
        0x0060:  6669 780d                                fix.
17:08:23.431572 IP mx-ecom.netflix.com.29698 > 
server.workflowproducts.com.smtp: Flags [.], ack 47, win 46, length 0
        0x0000:  d49a 20fd a988 e091 f53f 1307 0800 4500  .........?....E.
        0x0010:  0028 8f46 4000 2e06 b395 d04b 4cfc c0a8  .(.f...@......kl...
        0x0020:  2c04 7402 0019 3da6 d8f4 284e 5633 5010  ,.t...=...(NV3P.
        0x0030:  002e 9c7a 0000 0000 ae55 6786            ...z.....Ug.
17:08:23.431592 IP server.workflowproducts.com.smtp > 
mx-ecom.netflix.com.29698: Flags [P.], seq 47:48, ack 1, win 65535, length 1
        0x0000:  e091 f53f 1307 d49a 20fd a988 0800 4500  ...?..........E.
        0x0010:  0029 ce81 4000 4006 0000 c0a8 2c04 d04b  .)..@.@.....,..K
        0x0020:  4cfc 0019 7402 284e 5633 3da6 d8f4 5018  L...t.(NV3=...P.
        0x0030:  ffff 0a10 0000 0a                        .......
17:08:23.536567 IP mx-ecom.netflix.com.29698 > 
server.workflowproducts.com.smtp: Flags [.], ack 48, win 46, length 0
        0x0000:  d49a 20fd a988 e091 f53f 1307 0800 4500  .........?....E.
        0x0010:  0028 8f47 4000 2e06 b394 d04b 4cfc c0a8  .(.g...@......kl...
        0x0020:  2c04 7402 0019 3da6 d8f4 284e 5634 5010  ,.t...=...(NV4P.
        0x0030:  002e 9c79 0000 0000 33c5 eb66            ...y....3..f
17:08:53.164333 IP mx-ecom.netflix.com.29698 > 
server.workflowproducts.com.smtp: Flags [F.], seq 1, ack 48, win 46, length 0
        0x0000:  d49a 20fd a988 e091 f53f 1307 0800 4500  .........?....E.
        0x0010:  0028 8f48 4000 2e06 b393 d04b 4cfc c0a8  .(.h...@......kl...
        0x0020:  2c04 7402 0019 3da6 d8f4 284e 5634 5011  ,.t...=...(NV4P.
        0x0030:  002e 9c78 0000 0000 56a6 d38c            ...x....V...
17:08:53.164352 IP server.workflowproducts.com.smtp > 
mx-ecom.netflix.com.29698: Flags [.], ack 2, win 65535, length 0
        0x0000:  e091 f53f 1307 d49a 20fd a988 0800 4500  ...?..........E.
        0x0010:  0028 03b0 4000 4006 0000 c0a8 2c04 d04b  .(..@.@.....,..K
        0x0020:  4cfc 0019 7402 284e 5634 3da6 d8f5 5010  L...t.(NV4=...P.
        0x0030:  ffff 0a0f 0000                           ......
17:08:53.164950 IP mx-ecom.netflix.com.58047 > 
server.workflowproducts.com.smtp: Flags [S], seq 959704267, win 5840, options 
[mss 1380,nop,nop,sackOK,nop,wscale 7], length 0
        0x0000:  d49a 20fd a988 e091 f53f 1307 0800 4500  .........?....E.
        0x0010:  0034 4ba8 4000 2e06 f727 d04b 4cfc c0a8  .4K.@....'.KL...
        0x0020:  2c04 e2bf 0019 3933 eccb 0000 0000 8002  ,.....93........
        0x0030:  16d0 45c5 0000 0204 0564 0101 0402 0103  ..E......d......
        0x0040:  0307                                     ..

I found out that "win" refers to window size. I have no reason to believe this 
is a problem because I do not know how to read this output. But I'm a good 
sport so I looked it up and that led me to set the following sysctl values:

kern.ipc.maxsockbuf=4194304
net.inet.tcp.recvspace=250000
net.inet.tcp.sendspace=250000
 
net.inet.tcp.blackhole=2
net.inet.udp.blackhole=1
net.inet.icmp.icmplim=50

No joy though. Netflix is still unable to complete a mail transaction. 

If you look at the timestamps you can see in the middle the netflix server 
sends a packet, then waits 30 seconds, then sends another. I have no idea why. 

I am still completely baffled. Any help would be appreciated. I can't read this 
output and I don't know what it is to look it up. The only readable part is 
"220.server.workflowproducts.com.ESMTP.Postfix." and that doesn't indicate an 
error from what I've been able to find. 220 seems to indicate "ready" which 
would be good.


Regards,

Justin T

Reply via email to