Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

MPLS over 802.1Q Ethernet parsing#115

Closed
guyharris opened this issue Apr 16, 2013 · 2 comments
Closed

MPLS over 802.1Q Ethernet parsing #115

guyharris opened this issue Apr 16, 2013 · 2 comments

Comments

@guyharris
Copy link
Member

Converted from SourceForge issue 2796822, submitted by ericaustin

We run MPLS over an 802.1q tagged Ethernet link (2 labels deep on the MPLS). It looks like tcpdump fails to parse the packets properly in this scenario. Just MPLS seems to work and just 802.1q tagged seems to work but the combination of the two kills it. Coincidentally, Snort seems to have the same issue but Wireshark parses it fine.

@guyharris
Copy link
Member Author

Submitted by ericaustin

Nevermind; user error. I did not realize I had to do mpls popping twice since there are two labels. 'vlan and mpls and mpls and ip' works. I thought 'vlan and mpls and ip' would work.

@infrastation
Copy link
Member

For posterity, there is now a FAQ entry about this.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

2 participants