This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

please check for me.

0

link text No. 1 is the wireshark file.

link text

No.2 is the error file. Could you check for me between 203.126.29.157 and 192.168.0.2 any packet lost?

Because I see with red color line.

Thanks, Ko Htwe

asked 22 Apr '13, 19:39

aungkohtwe's gravatar image

aungkohtwe
6223
accept rate: 0%

edited 06 Mar '14, 10:57

cmaynard's gravatar image

cmaynard ♦♦
9.4k1038142


One Answer:

0

Ko Htwe,

What is the "problem" that you are seeing?

As far as I can see the RST packed in red is simply the end of a successful TLS conversation between the client to the SIP server. The client initiated the close with a FIN, the server ACKed that, but also followed up with the RST.

There is an immediate followup conversation (initiated at 4284) that seems to use the same certificate, and is still going on at the end of the capture.

Martin

answered 22 Apr '13, 21:03

martyvis's gravatar image

martyvis
8911525
accept rate: 7%