2013-11-14 54 views
-1

這很奇怪。這實際上如何工作。到目前爲止,我知道擁有這樣的網絡是「不可能的」。 我將詳細解釋我的網絡是如何工作的。互聯網提供商與「私人廣域網」的客戶?

我有一個局域網。 192.168.1.0/24和路由器是在192.168.1.1,這個路由器有一個公共地址。 我可以共享IP地址,因爲我在那裏運行一個服務器,不用再做任何測試。到目前爲止沒有問題。 現在神奇的事情發生了。 當我跟蹤到一個IP,我得到這個(到谷歌DNS)路線:

traceroute to 8.8.8.8 (8.8.8.8), 30 hops max, 60 byte packets 
1 zonhub.home (192.168.1.1) 1.160 ms 1.676 ms 1.340 ms 
2 * * * 
3 10.137.211.97 (10.137.211.97) 12.915 ms 12.526 ms 12.145 ms 
4 10.255.49.90 (10.255.49.90) 10.349 ms 10.255.49.102 (10.255.49.102) 11.483 ms 11.042 ms 
5 80.157.128.249 (80.157.128.249) 34.577 ms 80.157.130.41 (80.157.130.41) 32.917 ms 80.157.130.33 (80.157.130.33) 30.602 ms 
6 mad-sa3-i.MAD.ES.NET.DTAG.DE (217.5.95.161) 33.396 ms 80.157.128.22 (80.157.128.22) 27.107 ms mad-sa3-i.MAD.ES.NET.DTAG.DE (217.5.95.161) 29.510 ms 
7 80.157.128.22 (80.157.128.22) 28.050 ms 72.14.235.20 (72.14.235.20) 32.767 ms 80.157.128.22 (80.157.128.22) 27.932 ms 
8 72.14.235.20 (72.14.235.20) 29.780 ms 72.14.235.18 (72.14.235.18) 27.020 ms 26.706 ms 
9 216.239.43.233 (216.239.43.233) 49.456 ms 209.85.240.191 (209.85.240.191) 44.034 ms 216.239.43.233 (216.239.43.233) 51.935 ms 
10 72.14.236.191 (72.14.236.191) 53.374 ms 209.85.253.20 (209.85.253.20) 50.699 ms 216.239.43.233 (216.239.43.233) 44.918 ms 
11 209.85.251.231 (209.85.251.231) 50.151 ms * 216.239.49.45 (216.239.49.45) 47.309 ms 
12 google-public-dns-a.google.com (8.8.8.8) 51.536 ms 50.180 ms 45.505 ms 

什麼是第二,第三和第四跳?如果192.168.1.1正在運行NAT服務,那裏有我的局域網和外部3個公共地址(是的,我有3個,並且在88,89,93網絡上有3個「A類」IP),它怎麼會在A類私有地址上? 。

另一件事就是如何在第四跳我們有第二個八位字節255?

任何人都可以自由地跟蹤我的no-ip域名:synackfiles.no-ip.org 只是不要惹我的路由器(它阻塞,如果你端口掃描或無法登錄在SSH或HTTP身份驗證,所以你如果你只是跟蹤它是好的):P

現在,第二個奇蹟般的東西發生了。 我要運行nmap。所以我得到這個:

sudo nmap -sV -A -O 10.137.211.113 -vv -p 1-500 -Pn 

Starting Nmap 6.00 (http://nmap.org) at 2013-11-14 15:24 WET 
NSE: Loaded 93 scripts for scanning. 
NSE: Script Pre-scanning. 
NSE: Starting runlevel 1 (of 2) scan. 
NSE: Starting runlevel 2 (of 2) scan. 
Initiating Parallel DNS resolution of 1 host. at 15:24 
Completed Parallel DNS resolution of 1 host. at 15:24, 0.04s elapsed 
Initiating SYN Stealth Scan at 15:24 
Scanning 10.137.211.113 [500 ports] 
SYN Stealth Scan Timing: About 30.40% done; ETC: 15:26 (0:01:11 remaining) 
SYN Stealth Scan Timing: About 60.30% done; ETC: 15:26 (0:00:40 remaining) 
Completed SYN Stealth Scan at 15:26, 101.14s elapsed (500 total ports) 
Initiating Service scan at 15:26 
Initiating OS detection (try #1) against 10.137.211.113 
Initiating Traceroute at 15:26 
Completed Traceroute at 15:26, 9.05s elapsed 
Initiating Parallel DNS resolution of 1 host. at 15:26 
Completed Parallel DNS resolution of 1 host. at 15:26, 0.01s elapsed 
NSE: Script scanning 10.137.211.113. 
NSE: Starting runlevel 1 (of 2) scan. 
Initiating NSE at 15:26 
Completed NSE at 15:26, 0.00s elapsed 
NSE: Starting runlevel 2 (of 2) scan. 
Nmap scan report for 10.137.211.113 
Host is up (0.0010s latency). 
All 500 scanned ports on 10.137.211.113 are filtered 
Device type: general purpose|specialized|media device 
Running: Barrelfish, Microsoft Windows 2003|PocketPC/CE|XP, Novell NetWare 3.X, Siemens embedded, Telekom embedded 
OS CPE: cpe:/o:barrelfish:barrelfish cpe:/o:microsoft:windows_server_2003::sp1 cpe:/o:microsoft:windows_server_2003::sp2 cpe:/o:microsoft:windows_ce cpe:/o:microsoft:windows_xp:::professional cpe:/o:novell:netware:3.12 
Too many fingerprints match this host to give specific OS details 
TCP/IP fingerprint: 
SCAN(V=6.00%E=4%D=11/14%OT=%CT=%CU=%PV=Y%G=N%TM=5284EBAB%P=armv7l-unknown-linux-gnueabi) 
T7(R=Y%DF=N%TG=80%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=R) 
U1(R=N) 
IE(R=N) 


TRACEROUTE (using proto 1/icmp) 
HOP RTT  ADDRESS 
1 2.32 ms zonhub.home (192.168.1.1) 
2 ... 30 

NSE: Script Post-scanning. 
NSE: Starting runlevel 1 (of 2) scan. 
NSE: Starting runlevel 2 (of 2) scan. 
Read data files from: /usr/bin/../share/nmap 
OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/ . 
Nmap done: 1 IP address (1 host up) scanned in 122.65 seconds 
      Raw packets sent: 1109 (49.620KB) | Rcvd: 4 (200B) 

嗯,這很奇怪。我不知道我的國家的廣域網是如何設計和建造的。 我來自葡萄牙,我的ISP是「ZON TVCABO」。你現在可以搜索。 :P 這是非常非常非常有趣..

真誠,

INT3

回答

0
  • 我不能告訴你,你的供應商廣域網怎麼建 - 但爲了 節省公共IP地址 - 一個可以使用私有IP地址設計ISP內部網絡。不需要公開的路由器 只有私有IP--分配給您的IP可通過僅在ISP內部的路由器路由到您的 上行鏈路。

  • 第二跳沒有允許跟蹤,但允許轉發它們。

  • 4th - 10.255.x.x是10.0.0.0/8 A範圍內的私有IP。 (你的 可以使用0-255的數字)