From: Guy Harris <[EMAIL PROTECTED]>
Subject: Re: [tcpdump-workers] core dump with PPP messages 1 byte long.
Date: Wed, 7 Jul 2004 00:56:38 -0700
> On Wed, Jul 07, 2004 at 04:21:39PM +1000, Darren Reed wrote:
> > IP 1.1.1.1.1701 > 2.2.2.2.1701: l2tp:[TLS](24460/3222)Ns=23239,Nr=647
> >*MSGTYP
speaking of lengths...
on Linux when TSO (large send) is enabled, certain header fields are
left as zero. last i looked (I think my post on the topic went to the
bitbucket) this gave stuff like tcpdump fits. At present, I'm not
quite sure what to suggest as a fix - I fear it may involve both
On Thu, Jul 08, 2004 at 11:38:33AM +0200, rmkml wrote:
> Possible add detect tcp header len pb in tcpdump ?
I've added those checks to the x.8 and main branches in the tcpdump CVS
tree.
-
This is the tcpdump-workers list.
Visit https://lists.sandelman.ca/ to unsubscribe.
Hi,
I receive this packet,
but tcpdump not alarm this :
383:
08:40:18.127813 IP (tos 0x0, ttl 105, id 35774, offset 0, flags [none],
length: 40) 61.153.209.26.80 > 2.3.4.166.16879: S [tcp sum ok]
3768285676:3768285696(20) ack 3053624288 win 8760
372:
08:40:18.127813 61.153.209.26.80 > 2.3.4.166.