By knowing who starts the FIN or the RST (see TCP/IP protocol) you are on your way to determining what, when, who, and why! In this case we looked for when the TCP layer ended the session. One usually works form the problem backwards to find root cause. Starting from the beginning and going to the end of the trace as you stopped it. The packet flow will show up in the main screen area. The Stream Content will be shown giving you an idea what was going on. Try to find the conversation and filter it out.īy choosing Follow TCP Stream you will filter out just that converstation/session. You will see a bunch of packets in the background screen. Recreate the problem, and then select Stop as shown below. Select the appropriate Interface and press start. Wireshark uses the word Interfaces to refer to your hardware cards that connect to the network.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |