Ask Your Question

Revision history [back]

Wireshark on disabling TCP dissector shows a different packet

Hi

I have a Wireshark capture in which there is a TCP packet that is not categorized as HTTP. However, on opening the packet, I am able to observe a 200 OK. When I disable the TCP dissector to merge multiple streams, it shows the same packet as HTTP packet with 200 OK. This particular packet is only one single TCP stream. I do not see any other TCP packet which was a part of this packet had it not been merged.

Wireshark capture at this link http://s000.tinyupload.com/?file_id=04614464881294463845

Wireshark on disabling TCP dissector shows a different packet

Hi

I have a Wireshark capture in which there is a TCP packet that is not categorized as HTTP. However, on opening the packet, I am able to observe a 200 OK. When I disable the TCP dissector to merge multiple streams, it shows the same packet as HTTP packet with 200 OK. This particular packet is only one single TCP stream. I do not see any other TCP packet which was a part of this packet had it not been merged. The packet number is 94 which I observe the issue with.

Wireshark capture at this link http://s000.tinyupload.com/?file_id=04614464881294463845