Wireshark mailing list archives
Capturing only packets with bad TCP Checksum
From: Martin Isaksson <martin.isaksson () ericsson com>
Date: Mon, 5 Nov 2012 22:34:34 +0100
Hi, Is there any way of creating a capturing filter to only get packets that have a bad TCP checksum? Or am I better off creating a circular buffer of files and postprocessing with display filters them to save only the bad segments (and then merge with mergecap at the end)? Thanks, Martin
___________________________________________________________________________ Sent via: Wireshark-users mailing list <wireshark-users () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-users Unsubscribe: https://wireshark.org/mailman/options/wireshark-users mailto:wireshark-users-request () wireshark org?subject=unsubscribe
Current thread:
- Capturing only packets with bad TCP Checksum Martin Isaksson (Nov 05)
- Re: Capturing only packets with bad TCP Checksum Guy Harris (Nov 05)
- Re: Capturing only packets with bad TCP Checksum Martin Isaksson (Nov 06)
- Re: Capturing only packets with bad TCP Checksum Guy Harris (Nov 05)