Ask Your Question

What this reset cause means ? [closed]

asked 2022-06-24 14:01:19 +0000

mpalinka gravatar image

Hello !

Would anyone know what the reset cause "dt_antg" means ? I got this reset cause on my packet capture file and after searching I could not find anything that explain this cause. This reset cause appears below the SEQ/ACK analysis.

edit retag flag offensive reopen merge delete

Closed for the following reason the question is answered, right answer was accepted by mpalinka
close date 2022-06-30 17:36:17.963791


What type of device is sending the TCP reset?

Chuckc gravatar imageChuckc ( 2022-06-24 15:58:35 +0000 )edit

Hello ! The device is a oracle linux server sending this TCP reset to a F5 load balancer.

mpalinka gravatar imagempalinka ( 2022-06-28 18:25:28 +0000 )edit

1 Answer

Sort by ยป oldest newest most voted

answered 2022-06-30 17:35:32 +0000

mpalinka gravatar image

Hello ! I could found the reason. Reset cause "dt_antg" is regarding a security software named Darktrace Antigena, this software when detect some unsual behaviour send a TCP reset package as if it was the source address.

edit flag offensive delete link more

Question Tools

1 follower


Asked: 2022-06-24 14:01:19 +0000

Seen: 535 times

Last updated: Jun 30 '22