List 1 Windows 2000クライアントから同じサイトのドメインコントローラにログオンする場合のトレース

1  CELICA  LILY    DNS 0x1:Std Qry for _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local. of type Srv Loc on class INET addr.

2  LILY    CELICA  DNS 0x2:Std Qry Resp. for _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local. of type Srv Loc on class INET addr.
DNS: 0x1:Std Qry Resp. for _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local. of type Srv Loc on class INET addr.
    DNS: Query Identifier = 1 (0x1)
    DNS: DNS Flags = Response, OpCode - Std Qry, AA RD RA Bits Set, RCode - No error
        DNS: 1............... = Response
        DNS: .0000........... = Standard Query
        DNS: .....1.......... = Server authority for domain
        DNS: ......0......... = Message complete
        DNS: .......1........ = Recursive query desired
        DNS: ........1....... = Recursive queries supported by server
        DNS: .........000.... = Reserved
        DNS: ............0000 = No error
    DNS: Question Entry Count = 1 (0x1)
    DNS: Answer Entry Count = 1 (0x1)
    DNS: Name Server Count = 0 (0x0)
    DNS: Additional Records Count = 1 (0x1)
    DNS: Question Section: _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local. of type Srv Loc on class INET addr.
        DNS: Question Name: _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local.
        DNS: Question Type = Service Location
        DNS: Question Class = Internet address class
    DNS: Answer section: _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local. of type Srv Loc on class INET addr.
        DNS: Resource Name: _ldap._tcp.Another-Site._sites.dc._msdcs.active.dsl.local.
        DNS: Resource Type = Service Location
        DNS: Resource Class = Internet address class
        DNS: Time To Live = 600 (0x258)
        DNS: Resource Data Length = 32 (0x20)
        DNS: Priority = 0 (0x0)
        DNS: Weight = 100 (0x64)
        DNS: Port = 389 (0x185)
        DNS: Target Name: win2k-2.active.dsl.local.
    DNS: Additional Records Section: win2k-2.active.dsl.local. of type Host Addr on class INET addr.
        DNS: Resource Name: win2k-2.active.dsl.local.
        DNS: Resource Type = Host Address
        DNS: Resource Class = Internet address class
        DNS: Time To Live = 1200 (0x4B0)
        DNS: Resource Data Length = 4 (0x4)
        DNS: IP address = 192.168.2.23

3  CELICA  *BRDCST ARP_RARP ARP: Request, Target IP: 192.168.2.23

4  WIN2K-2 CELICA  ARP_RARP ARP: Reply, Target IP: 192.168.2.2 Target Hdwr Addr: xxxxxxxxxxxx

5  CELICA  WIN2K-2 LDAP ProtocolOp: SearchRequest (3)

6  WIN2K-2 CELICA  LDAP ProtocolOp: SearchResponse (4)

7  CELICA  WIN2K-2 ICMP Echo: From 192.168.2.2 To 192.168.2.23 192.168.2.2

8  WIN2K-2 CELICA  ICMP Echo Reply: To 192.168.2.2 From 192.168.2.23

9  CELICA  WIN2K-2 TCP ....S., len:    0, seq:   3501223-3501223, ack:         0, win:16384, src: 1030  dst:  445

10 WIN2K-2 CELICA  TCP .A..S., len:    0, seq:3620377604-3620377604, ack:   3501224, win:17520, src:  445  dst: 1030

11 CELICA  WIN2K-2 TCP .A...., len:    0, seq:   3501224-3501224, ack:3620377605, win:17520, src: 1030  dst:  445

12 CELICA  WIN2K-2 SMB C negotiate, Dialect = NT LM 0.12

13 CELICA  WIN2K-2 ICMP Echo: From 192.168.2.2 To 192.168.2.23

14 WIN2K-2 CELICA  ICMP Echo Reply: To 192.168.2.2 From 192.168.2.23

15 WIN2K-2 CELICA  SMB R negotiate, Dialect # = 5

16 CELICA  WIN2K-2 TCP ....S., len:    0, seq:   3558626-3558626, ack:         0, win:16384, src: 1032  dst:  135

17 WIN2K-2 CELICA  TCP .A..S., len:    0, seq:3620426999-3620426999, ack:   3558627, win:17520, src:  135  dst: 1032

18 CELICA  WIN2K-2 TCP .A...., len:    0, seq:   3558627-3558627, ack:3620427000, win:17520, src: 1032  dst:  135

19 CELICA  WIN2K-2 MSRPC c/o RPC Bind:         UUID xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx  call 0x1  assoc grp 0x0  xmit 0x16D0  recv 0x16D0

20 WIN2K-2 CELICA  MSRPC c/o RPC Bind Ack:     call 0x1  assoc grp 0xD4A6  xmit 0x16D0  recv 0x16D0

21 CELICA  WIN2K-2 MSRPC c/o RPC Request:      call 0x1  opnum 0x3  context 0x0  hint 0x84

22 WIN2K-2 CELICA  MSRPC c/o RPC Response:     call 0x1  context 0x0  hint 0x80  cancels 0x0

23 CELICA  WIN2K-2 TCP .A...F, len:    0, seq:   3558855-3558855, ack:3620427212, win:17308, src: 1032  dst:  135

24 WIN2K-2 CELICA  TCP .A...., len:    0, seq:3620427212-3620427212, ack:   3558856, win:17292, src:  135  dst: 1032

25 WIN2K-2 CELICA  TCP .A...F, len:    0, seq:3620427212-3620427212, ack:   3558856, win:17292, src:  135  dst: 1032

26 CELICA  WIN2K-2 TCP .A...., len:    0, seq:   3558856-3558856, ack:3620427213, win:17308, src: 1032  dst:  135

27 CELICA  WIN2K-2 TCP ....S., len:    0, seq:   3620751-3620751, ack:         0, win:16384, src: 1033  dst: 1026

28 WIN2K-2 CELICA  TCP .A..S., len:    0, seq:3620461186-3620461186, ack:   3620752, win:17520, src: 1026  dst: 1033

29 CELICA  WIN2K-2 TCP .A...., len:    0, seq:   3620752-3620752, ack:3620461187, win:17520, src: 1033  dst: 1026

30 CELICA  WIN2K-2 MSRPC c/o RPC Bind:         UUID xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx  call 0x1  assoc grp 0x0  xmit 0x16D0  recv 0x16D0

31 WIN2K-2 CELICA  MSRPC c/o RPC Bind Ack:     call 0x1  assoc grp 0xB211  xmit 0x16D0  recv 0x16D0

32 CELICA  WIN2K-2 R_LOGON RPC Client call logon:NetrServerReqChallenge(..)

33 WIN2K-2 CELICA  R_LOGON RPC Server response logon:NetrServerReqChallenge(..)

34 CELICA  WIN2K-2 R_LOGON Error: Bad Opcode (Function does not exist)

35 WIN2K-2 CELICA  R_LOGON Error: Bad Opcode (Function does not exist)

36 CELICA  WIN2K-2 TCP ....S., len:    0, seq:   3662578-3662578, ack:         0, win:16384, src: 1034  dst: 1026

37 WIN2K-2 CELICA  TCP .A..S., len:    0, seq:3620520666-3620520666, ack:   3662579, win:17520, src: 1026  dst: 1034

38 CELICA  WIN2K-2 TCP .A...., len:    0, seq:   3662579-3662579, ack:3620520667, win:17520, src: 1034  dst: 1026

39 CELICA  WIN2K-2 MSRPC c/o RPC Bind:         UUID xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx  call 0x3  assoc grp 0xB211  xmit 0x16D0  recv 0x16D0

40 WIN2K-2 CELICA  MSRPC c/o RPC Bind Ack:     call 0x3  assoc grp 0xB211  xmit 0x16D0  recv 0x16D0

41 CELICA  WIN2K-2 R_LOGON Error: Bad Opcode (Function does not exist)

42 WIN2K-2 CELICA  R_LOGON Error: Bad Opcode (Function does not exist)

43 CELICA  WIN2K-2 UDP Src Port: Unknown, (1035); Dst Port: Unknown (88); Length = 346 (0x15A)

44 WIN2K-2 CELICA  UDP Src Port: Unknown, (88); Dst Port: Unknown (1035); Length = 1359 (0x54F)

45 CELICA  WIN2K-2 UDP Src Port: Unknown, (1036); Dst Port: Unknown (88); Length = 1324 (0x52C)

46 WIN2K-2 CELICA  UDP Src Port: Unknown, (88); Dst Port: Unknown (1036); Length = 1252 (0x4E4)

47 CELICA  WIN2K-2 UDP Src Port: Unknown, (1037); Dst Port: Unknown (88); Length = 1316 (0x524)

48 WIN2K-2 CELICA  UDP Src Port: Unknown, (88); Dst Port: Unknown (1037); Length = 1286 (0x506)