AFAIK tcptraceroute
is the best tool to check if a firewall is blocking the tcp connection to a service. (If you know a better tool, please let leave a comment)
Some hops do not reply. See * * *
remotehost:~ # tcptraceroute ftp.example.com ftp
Selected device eth0, address 10.172.19.11, port 40768 for outgoing packets
Tracing the path to ftp.example.com (10.101.7.124) on TCP port 21 (ftp), 30 hops max
1 * * *
2 172.18.56.12 0.407 ms 0.222 ms 0.230 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 10.102.1.1 32.017 ms 31.728 ms 31.486 ms
8 * * *
9 10.101.7.124 [open] 31.728 ms 32.391 ms 33.549 ms
Is there a term for the behaviour of these hops?
How to call this, if the hop does not respond, and I see * * *
in the output?
(Unfortunately I don't have 300 reputations and can't create the new tag "tcptraceroute")
Background: I would like to tell the people how are responsible for the network, that they should use routers which do NOW-I-AM-MISSING-THE-MAGIC-TERM.