Ask Your Question

Packets missed

asked 2023-01-04 22:35:40 +0000

djhurt1 gravatar image

I'm not an expert with wireshark. Normally when capturing on an interface wireshark was very good at capturing everything that interface saw. The last couple of versions there's data I'm putting on the line that wireshark doesn't see unless it's large flood of packets. For example testing a connection to a serial/TCP terminal server. If I send a small amount of data from the device, wireshark sees nothing. Only when I send large amounts does wireshark pick up the traffic. The capturing pc and the devices are on the same subnet, VLAN and switch. Set it to capture on the ethernet interface. As far as I can tell there are no capture filters or display filters in place. Promiscuous mode is turned on. Am I missing something or is it unlikely I'll see some the traffice on the wire not from or destined to the pc wireshark is running on?

edit retag flag offensive close merge delete

1 Answer

Sort by ยป oldest newest most voted

answered 2023-01-05 09:04:29 +0000

Jaap gravatar image
edit flag offensive delete link more

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

1 follower


Asked: 2023-01-04 21:58:10 +0000

Seen: 120 times

Last updated: Jan 05