Ask Your Question
0

A bit disturbed

asked 2024-07-18 12:10:47 +0000

helpme gravatar image

updated 2024-07-18 12:22:24 +0000

Hello!

I'm a kinda amateur user of all those IT things, like wireshark and linux - just learning - and yesterday I've decided to make wireshark capture session of my laptop's wifi interface. I let it run for ~24 hours and now i'm having fun' analyzing this big data of about a 6 million packets.

And here is what disturbed me at once - I have my phone connected to the same wifi, but why I see it in my computer wifi's packets? It does ARPs and is in the 'endpoints' and 'ethernet' list. Is it normal?

Second my question would be about vpn. I have it on my laptop 'attached' to interface, not as a browser extension or anything - and want to figure out, does all the services what isn't browsing, accessing their servers via vpn? I mean can my ISP see what services my laptop is trafficking?

Thanks in advance :-)

https://drive.proton.me/urls/VXEJ6RXC...

https://drive.proton.me/urls/WYQ23C08...

edit retag flag offensive close merge delete

1 Answer

Sort by ยป oldest newest most voted
0

answered 2024-07-18 13:34:08 +0000

Jaap gravatar image
  1. Yes this is normal
  2. Filter out all VPN tunnel traffic and see what remains. If there's non-local traffic in there, this is bypassing the VPN.
edit flag offensive delete link more

Comments

by filtering out vpn tunnel traffic you mean excluding vpn's ip in search?

helpme gravatar imagehelpme ( 2024-07-18 13:47:01 +0000 )edit

That is what you can do.

Jaap gravatar imageJaap ( 2024-07-18 18:06:42 +0000 )edit

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

1 follower

Stats

Asked: 2024-07-18 12:10:47 +0000

Seen: 95 times

Last updated: Jul 18