Ask Your Question

JasMan's profile - activity

2020-08-08 13:07:05 +0000 answered a question How to capture filter by tshark http.request Of traffic

First of all you should try to use dumpcap instead of tshark for a better performance. You can then work with the advan

2020-08-01 10:53:54 +0000 commented question How to get the hidden radio stream links in order to create my list of radios on Reciva.

Run Wireshark to capture all traffic of your LAN connection, open the webpage of your favorite Onlineradio and start the

2020-08-01 10:45:11 +0000 commented question Softphone having Issues Over VPN

You've captured only one direction (to 10.1.129.215). Could you create a new capture including both directions please. A

2020-07-25 13:31:24 +0000 commented question Last few days my PING is really high on Lan

Could it be a loop or do you have multiple connections to your router/LAN? Because the source and destination mac addres

2020-07-25 13:26:09 +0000 commented question Last few days my PING is really high on Lan

Could it be a loop or do you have multiple connections to your router/LAN? Because the source and destination mac addres

2020-07-23 19:20:47 +0000 commented question What is trafic to server doing?

I would have a look. You can upload your capture here

2020-07-23 18:53:38 +0000 commented question What is trafic to server doing?

I would have a look. You can upload your capture here

2020-07-19 13:29:13 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-19 13:27:52 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-19 13:22:28 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-19 13:22:06 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-19 13:21:40 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-19 13:18:55 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-19 13:18:33 +0000 commented question Network attack

Thank you for the capture file. I'm not totaly sure about my answer (see comment at the bottom). So would be great if so

2020-07-18 13:59:51 +0000 commented question Network attack

The first question should be what kind of attack has been launched. Than you can filter the capture to this traffic, cou

2020-07-18 11:18:19 +0000 received badge  Enthusiast
2020-07-11 14:15:48 +0000 commented question Trying to understand why RTT changes during a call

Because the capture was taken in the middle of the way between the client and the server, it's difficult to say what exa

2020-07-10 21:59:43 +0000 commented question Trying to understand why RTT changes during a call

Looks like the server/application causes the delay. When you filter to the second of the two streams in the capture (tcp

2020-07-10 21:42:19 +0000 commented question Trying to understand why RTT changes during a call

Looks like the server/application causes the delay. When you filter to the second of the two streams in the capture (tcp

2020-06-26 14:55:09 +0000 received badge  Rapid Responder (source)
2020-06-26 14:55:09 +0000 answered a question detecting duplication and retransmission

Not sure if I understood your question completly. I assume that you want to know how you can distinguish duplicate packe

2020-06-21 10:17:26 +0000 received badge  Rapid Responder (source)
2020-06-21 10:17:26 +0000 answered a question No FIN ACK to end stream

From the point of view of TCP the connection is still established as long as you see no FIN or RST flag, or until the co

2020-06-19 13:22:31 +0000 commented question Strange TCP behavior

Have you captured the traffic on the client or on the server? Where is the server? Is it behind the new WAN device or in

2020-06-16 19:15:12 +0000 commented question FTP upload disrupted half way through file transfer

You can upload or link a picture to your question, but mostly screenshots only will not help to solve such connection is

2020-06-16 19:08:53 +0000 commented question Wireshark, What Information Does Norton Security Send Back to Symantec?

According to your "screenshot" the connection to Symantec is encrypted, so you won't see the real data when you do a cap

2020-06-16 19:02:11 +0000 commented question Wireshark, What Information Does Norton Security Send Back to Symantec?

According to your "screenshot" the connection to Symantec is encrypted, so you won't see the real data when you do a cap

2020-06-15 18:47:31 +0000 commented question How to determine reasons for slow Internet/network performance

Hey @balcee, where you been able to solve the issue?

2020-06-14 10:13:46 +0000 commented question Trying to find bandwidth usage by device

Where/how have you captured the traffic? When you say you see less then 1k for the mac address of your iPhone, I guess y

2020-06-13 10:40:53 +0000 commented question can anyone help me to analyze my pcap file collected from customer?

I would be interested to take a view into the capture. Can you provide a download link?

2020-06-11 21:56:11 +0000 commented answer USB Adapter with packet drops

Thank you @Bob Jones for testing. I appreciate your effort. And I'm glad to read, that's not only me again who's having

2020-06-11 21:53:26 +0000 commented question SFTP connection issue RST sent intead of ACK

@Bob Jones Also a good point. The Java program should not care about the IP part unless Java or the SSH implementation "

2020-06-11 21:53:14 +0000 commented question SFTP connection issue RST sent intead of ACK

@Bob-Jones Also a good point. The Java program should not care about the IP part unless Java or the SSH implementation "

2020-06-11 14:44:13 +0000 commented answer USB Adapter with packet drops

I bought a TP-Link UE300 adapter with RTL8153 chipset and tested it. When I had disabled "Priority & VLAN" in the a

2020-06-11 11:32:40 +0000 commented answer SFTP connection issue RST sent intead of ACK

I agree to @Christian_R conclusion that something on the way manipulated the IP ID, and that's why the connection is res

2020-06-11 11:05:25 +0000 commented question Find what is pinging a certain set of IP Addresses

I would first check if the beep stops when you disconnect a bridge from the rest of your network. Just to be sure that i

2020-06-11 11:02:20 +0000 commented question Find what is pinging a certain set of IP Addresses

I would first check if the beep stops when you disconnect a bridge from the rest of your network. Just to be sure that i

2020-06-10 20:50:45 +0000 commented question Packet Capture doesn't show packets for 'Destination host unreachable' and 'Response timed out'.

I guess the two VM hosts are connected to different switches or at least to different ports on the same switch. When y

2020-06-07 13:46:14 +0000 commented question Trouble reaching IPv4 websites

@BioTo: Strange, I'm using a FB7560 (VDSL) with v7.12 and the capture site is still available. You could try to access t

2020-06-06 14:47:18 +0000 commented question Trouble reaching IPv4 websites

@BioTo: Due to the fact that only new IPv4 connections get blocked, and that your client reaches the end of the availabl

2020-06-06 14:09:39 +0000 commented question Trouble reaching IPv4 websites

@BioTo: Due to the fact that only new IPv4 connections get blocked, and that your client reaches the end of the availabl

2020-06-06 14:00:57 +0000 commented question Trouble reaching IPv4 websites

@BioTo: Due to the fact that only new IPv4 connections get blocked, and that your client reaches the end of the availabl

2020-06-05 22:38:28 +0000 commented question How to determine reasons for slow Internet/network performance

Hey @balcee, DNS is not the probleme here. You will find the DNS request for demo.threatpulse.com in packet 366 and the

2020-05-29 13:09:06 +0000 commented question one-way traffic from source port - cisco etherchannel

I noticed the same behaviour on our Nexus 5000 switches some years ago. Our Cisco partner told us that this is normal. B

2020-05-23 10:47:39 +0000 commented answer What is this TCP error telling me?

According to your traceroute output it must be the interface with IP address 10.75.1.x. To determine if you do the captu

2020-05-22 20:52:50 +0000 commented question DNS Delay, ICMP message sent from query sender.

I would aggree to your conclusion. I guess 10.1.10.1 is closing his outgoing port as soon as he starts a new query to 1

2020-05-22 20:46:33 +0000 commented answer What is this TCP error telling me?

Traceroute looks the same from my side. We can assume that you can reach the IP address itself. But it's difficult to co

2020-05-22 15:45:28 +0000 commented answer What is this TCP error telling me?

Switch and powerline adapters are layer-2 devices. They shouldn't block ports or IP addresses. Can you post the output o

2020-05-22 15:27:12 +0000 commented question USB Adapter with packet drops

I've opened a npcap issue: Packet drops with USB (Gigabit) Ethernet adapter with ASIX chipset #172

2020-05-22 13:36:30 +0000 commented question USB Adapter with packet drops

I was able to test another adapter with AX88179 chipset from Unplugable (USB3-E1000), and it has the same issue. So no h