Wireshark mailing list archives

HTTP not decoded


From: Srivats P <pstavirs () gmail com>
Date: Wed, 3 Nov 2010 21:00:49 +0530

Hi,

Wireshark does not seem to decode TCP port 80 as HTTP for the attached
pcap file - instead it shows the HTTP data as "TCP segment data".

Is this expected behaviour? Is it because the file does not contain
the TCP handshake packets?

Using Wireshark Version 1.2.1 (SVN Rev 29141) on Windows.

Regards,
Srivats

Attachment: sample.pcap
Description:

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe

Current thread: