Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

Wireshark on virtualbox machine does not see specific packets, while the hist does see the packet

L.S.,

I hope someone can shed some light on the problem below, I am at the end of my rope

I run virtualbox 5.2.8 on a WIN7 machine, with a virtual machine running unbuntu 16.04. I have the virtual machine network adapter in bridged mode.

I am trying to detect the presence of an iphone on the network by doing a SYN-SYN-ACK-ACK three way handshake on port 62078 on the iPhone. (it is very difficult to detect iPhones ;-)) When I run wireshark on the host, I see the SYN packet leave the virtual machine, and I see the return SYN-ACK packet arrive at the host. I also run wireshark on the VM, and I see the SYN packet leave, but never see the return SYN-ACK packet, while see it in the capture on the host.

Since the VM adapter is in bridged mode, it should see ALL traffic on the host adapter. I am at the end of my rpe here.... Any help or guidance is appreciated.

Wireshark on virtualbox machine does not see specific packets, while the hist does see the packet

L.S.,

I hope someone can shed some light on the problem below, I am at the end of my rope

I run virtualbox 5.2.8 on a WIN7 machine, with a virtual machine running unbuntu 16.04. I have the virtual machine network adapter in bridged mode.

I am trying to detect the presence of an iphone on the network by doing a SYN-SYN-ACK-ACK three way handshake on port 62078 on the iPhone. (it is very difficult to detect iPhones ;-)) When I run wireshark on the host, I see the SYN packet leave the virtual machine, and I see the return SYN-ACK packet arrive at the host. I also run wireshark on the VM, and I see the SYN packet leave, but never see the return SYN-ACK packet, while see it in the capture on the host.

Since the VM adapter is in bridged mode, it should see ALL traffic on the host adapter. I am at the end of my rpe here.... Any help or guidance is appreciated.