eltavlador 0 Posted ... I read this post about doing a VPN leak test and noticed that tcpdump reports traffic to/from an IP that is a number less than my VPN IP address. For example my current address is 213.152.162.165 but tcpdump reports 213.152.162.164: sudo tcpdump -n -i 1 not host 213.152.162.165 2>&1 | tee tcpdump.log 11:17:44.277413 IP 192.168.1.2.42576 > 213.152.162.164.443: UDP, length 11711:17:44.325177 IP 213.152.162.164.443 > 192.168.1.2.42576: UDP, length 165Is this normal and if yes why the difference? Quote Share this post Link to post
me.moo@posteo.me 80 Posted ... 213.152.162.164 is the IP Entry address of the Air server you are connected to whereas 213.152.162.165 is the IP Exit address of that server, the one the world see's. 1 rickjames reacted to this Quote Share this post Link to post
User of AirVPN 47 Posted ... The IP ending in 164 that is one lower is the entry IP address, the IP which you connect to.The one ending in 165 is the exit IP, which everyone else sees.This prevents correlation attacks. Quote Share this post Link to post
me.moo@posteo.me 80 Posted ... The IP ending in 164 that is one lower is the entry IP address, the IP which you connect to.The one ending in 165 is the exit IP, which everyone else sees.This prevents correlation attacks. Why the repeat? Quote Share this post Link to post