トラフィックミラーリングのセットアップの流れ ◼ ターゲットインスタンスでtcpdump実行 ⚫ tcpdump –i eth0 port 4789 -A 02:02:36.768244 IP ip-10-8-1-71.ap-northeast-1.compute.internal.65504 > ip-10-8-1-30.ap-northeast-1.compute.internal.4789: VXLAN, flags [I] (0x08), vni 1234 IP xxx.xxx.xxx.xxx.47274 > ip-10-8-1-71.ap-northeast-1.compute.internal.http: Flags [P.], seq 1:498, ack 1, win 229, options [nop,nop,TS val 862956292 ecr 3588024290], length 497: HTTP: GET / HTTP/1.1 E..W.......! ..G ........C.......... h.... ]...3..E..%
[email protected]..]yS.. ..G...PR."F.){.....L...... 3o......GET / HTTP/1.1 Host: 13.114.180.185 Pragma: no-cache Cache-Control: no-cache Upgrade-Insecure-Requests: 1 User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36 Edg/139.0.0.0 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7 Accept-Encoding: identity Accept-Language: ja,en;q=0.9,en-GB;q=0.8,en-US;q=0.7 Connection: close