Wireshark mailing list archives

Re: Missing TCP Flags


From: Jaap Keuter <jaap.keuter () xs4all nl>
Date: Wed, 08 Sep 2010 19:00:05 +0200



Hi, 

Wireshark version? 
Sample caption? 

Thanks,
Jaap 

On Wed, 8
Sep 2010 14:37:58 +0100, "Scheffenegger, Richard"  wrote:  

Hi, 

I
have here a trace with the RFC3540 ECN Nounce. That (valid) TCP Flag is
one of the lower 4 bits where the TCP options length is also stored;
however, Wireshare doesn't seem to decode the full 12-bit TCP Flags
field properly - only the lower 8 bits are shown. 

Does anyone know how
to fix this, so that the full 12 bit field is decoded (3 reserved bits,
ECN, CWR, ECE, URG, ACK, PSH, RST, SYN, FIN )? 

Thanks, 

RICHARD
SCHEFFENEGGER

 
___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe

Current thread: