Packets missed

asked 2023-01-04 22:35:40 +0000

djhurt1 gravatar image

I'm not an expert with wireshark. Normally when capturing on an interface wireshark was very good at capturing everything that interface saw. The last couple of versions there's data I'm putting on the line that wireshark doesn't see unless it's large flood of packets. For example testing a connection to a serial/TCP terminal server. If I send a small amount of data from the device, wireshark sees nothing. Only when I send large amounts does wireshark pick up the traffic. The capturing pc and the devices are on the same subnet, VLAN and switch. Set it to capture on the ethernet interface. As far as I can tell there are no capture filters or display filters in place. Promiscuous mode is turned on. Am I missing something or is it unlikely I'll see some the traffice on the wire not from or destined to the pc wireshark is running on?

answered 2023-01-05 09:04:29 +0000

Jaap gravatar image
Asked: 2023-01-04 21:58:10 +0000

Seen: 120 times

Last updated: Jan 05