Ask Your Question

johns287's profile - activity

2020-10-16 12:28:10 +0000 commented answer Why are some TCP conversations shown backwards/reversed?

Thanks! I'll make a request on the Gitlab site to change this feature to order the hosts according to the 3 way handshak

2020-10-16 12:16:08 +0000 marked best answer Why are some TCP conversations shown backwards/reversed?

When viewing TCP conversations, the flow appears backwards. I would expect "Address A" to be the source and "Address B" to be destination like it is most of the time. In both examples, I captured TCP SYN & SYN ACKs, but one example shows the correct direction and the other is reversed.

Edit: links to files at the bottom. I also found another example with the same source and dest as the backwards example which shows correctly. My thought is that Wireshark is seeing the source port higher than the destination port so it orders them as such.

Win10 x64 Wireshark Version 3.2.7 (v3.2.7-0-gfb6522d84a3a)

Backwards:

image description

Correct:

image description

Edit: Correct with same source and dest as the backwards one:

image description

Backwards cap: https://www.dropbox.com/s/wpeyc0nui6i...

Not backwards cap: https://www.dropbox.com/s/3as7qeabusy...

Not backwards with same src/dst as original: https://www.dropbox.com/s/0nxed4bwb87...

2020-10-16 12:16:08 +0000 received badge  Scholar (source)
2020-10-15 20:25:36 +0000 edited question Why are some TCP conversations shown backwards/reversed?

Why are some TCP conversations shown backwards/reversed? When viewing TCP conversations, the flow appears backwards. I w

2020-10-15 20:25:24 +0000 commented question Why are some TCP conversations shown backwards/reversed?

Thanks. I edited the original post with the files. I also found another example with the same source and dest as the bac

2020-10-15 20:24:21 +0000 received badge  Editor (source)
2020-10-15 20:24:21 +0000 edited question Why are some TCP conversations shown backwards/reversed?

Why are some TCP conversations shown backwards/reversed? When viewing TCP conversations, the flow appears backwards. I w

2020-10-15 19:23:01 +0000 asked a question Why are some TCP conversations shown backwards/reversed?

Why are some TCP conversations shown backwards/reversed? When viewing TCP conversations, the flow appears backwards. I w