Duplicate parsing in one direction (egress) with Wireshark v3 but v1.8 is normal.
Hi Everyone,
I got a problem about duplicate parsing in one direction (egress) with Wireshark v3.0.1 but v1.8 is normal. I had tried stable release v3.0 and v3.0.1 but same results. Before upgrade wireshark, I used v1.8 and works well. Anyone got same experience with me and please give me some advice, thanks.
I pasted text below for reference:
No. Time Source Destination Protocol Length Info
4 5.212966 RealtekS_36:01:23 SpidcomT_13:00:01 HomePlug AV 60 OUI:0x13d7
5 5.212980 RealtekS_36:01:23 SpidcomT_13:00:01 HomePlug AV 60 OUI:0x13d7
6 5.213825 SpidcomT_13:00:01 RealtekS_36:01:23 HomePlug AV 60 OUI:0x13d7
Do you mean:
No, sorry for making mistake. I mean different version will get different result during live capture. V3.0 will get same packets twice in egress but V1.8 not. Just like the text, you can see packet number 4 and 5 are same packets in V3.0 but it will only get one packet in V1.8.
And can you describe your capture setup, e.g. how (on host, tap, span), host OS and capture library if capturing on host?
I show my wireshark about information for your reference:
(more)More information. I tried v2.6.8 and works well. I hope that can provide more clue for debugging. I show my wireshark about information for your reference:
(more)