nullindividual 17 days ago

Can you provide an example from network logs? ICMP packets are plain text readable [0]. What do you see?

> https://en.wikipedia.org/wiki/Internet_Control_Message_Proto...

  • nickburns 17 days ago

    i've seen what could only appear to be encrypted (read: not human but only machine readable) and fragmented payloads. consecutive packets are sized right up to the apparently negotiated MTU. and it very much appears to be encapsulated extraneous data, meaning completely unrelated to ICMP types 8 and 0.

    the most curious part is that the 'connected' server/s replying to my clients are addressed only from Apple's IANA-assigned IPv4 netblock (and presumably from their IPv6 assignments as well).

    i would need to set up a new capture as i don't have one documented. but i'm capturing actual packets off the wire, not simply logging.