H:\>ping 10.10.2.65 -l 1600
Pinging 10.10.2.65 with 1600 bytes of data:
Reply from 10.10.2.65: bytes=1600 time=3ms TTL=58
Reply from 10.10.2.65: bytes=1600 time=3ms TTL=58
Reply from 10.10.2.65: bytes=1600 time=3ms TTL=58
Reply from 10.10.2.65: bytes=1600 time=3ms TTL=58
>monitor traffic interface ae0.0 no-resolve matching "host 172.21.21.62 and icmp" size 9999
verbose output suppressed, use <detail> or <extensive> for full protocol decode
Address resolution is OFF.
Listening on ae0.0, capture size 9999 bytes
12:35:07.693220 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:07.693244 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1432, length 1480
12:35:07.693331 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1432, length 1480
12:35:07.693376 Out IP 10.10.2.65 > 172.21.21.62: icmp
12:35:08.706459 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1433, length 1480
12:35:08.706490 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:08.706563 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1433, length 1480
12:35:08.706610 Out IP 10.10.2.65 > 172.21.21.62: icmp
12:35:09.719541 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1434, length 1480
12:35:09.719574 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:09.719647 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1434, length 1480
12:35:09.719693 Out IP 10.10.2.65 > 172.21.21.62: icmp
12:35:10.730452 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1435, length 1480
12:35:10.730483 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:10.730553 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1435, length 1480
12:35:10.730600 Out IP 10.10.2.65 > 172.21.21.62: icmp
12:35:11.740802 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1436, length 1480
12:35:11.740834 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:11.740907 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1436, length 1480
12:35:11.740956 Out IP 10.10.2.65 > 172.21.21.62: icmp
12:35:12.752536 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1437, length 1480
12:35:12.752569 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:12.752643 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1437, length 1480
12:35:12.752689 Out IP 10.10.2.65 > 172.21.21.62: icmp
12:35:13.764154 In IP 172.21.21.62 > 10.10.2.65: ICMP echo request, id 1, seq 1438, length 1480
12:35:13.764196 In IP 172.21.21.62 > 10.10.2.65: icmp
12:35:13.764269 Out IP 10.10.2.65 > 172.21.21.62: ICMP echo reply, id 1, seq 1438, length 1480
12:35:13.764316 Out IP 10.10.2.65 > 172.21.21.62: icmp
^C
80 packets received by filter
0 packets dropped by kernel
{master:0}
Why do we add this size 9999 there? Is this reason that we are seeing "IP truncated-ip - 1268 bytes missing! " when not using size 9999?