Windows equivalent to eth0

Is there a common IP device name for windows similar to "eth0" used by Linux and Solaris?

I am trying to track SCTP traffic, which seems to successfully pass an IP address, but this means that for each machine this application will change to use the host address.

thanks

+4
source share
3 answers

The best way to find the default interface is to query the route table for route 0.0.0.0 (default). This will be associated with only one interface. Of course, in a dynamic environment, this is a snapshot.

C:\> route PRINT 0.0.0.0 Active Routes: Network Destination Netmask Gateway Interface Metric 0.0.0.0 0.0.0.0 10.117.254.254 10.117.1.68 20 Default Gateway: 10.117.254.254 
+3
source

There is no "standard" or "standard" device. Indeed, it is difficult to say on a laptop, for example, for example. Wireless or wired device will be "more by default." In addition, there are fake devices for firewalls, virtual machine instances, etc.

You will need to monitor all devices, or at least all active devices (those that are not disconnected.)

+1
source

Are you using Wireshark to monitor and fear that you will have to open two Wiresharks to monitor a single SCTP association?

If so, you can simply observe in promiscuous mode and apply sctp as a filter or port 2905 (or the port on which the SCTP association is running). However, Promiscuous mode requires root (or admin) privileges.

If you don't have Promiscuous mode, then, as Jason suggested, you will need to control the entire IP address, which is part of the association. Of course, you can combine all the individual pcap files into one, and then analyze the association traffic.

Of course, if it has nothing to do with Wireshark, then all this is gibberish :)

0
source

All Articles