speaking of lengths...
on Linux when TSO (large send) is enabled, certain header fields are
left as zero. last i looked (I think my post on the topic went to the
bitbucket) this gave stuff like tcpdump fits. At present, I'm not
quite sure what to suggest as a fix - I fear it may involve both
On Thu, Jul 08, 2004 at 11:38:33AM +0200, rmkml wrote:
> Possible add detect tcp header len pb in tcpdump ?
I've added those checks to the x.8 and main branches in the tcpdump CVS
tree.
-
This is the tcpdump-workers list.
Visit https://lists.sandelman.ca/ to unsubscribe.
Hi,
I receive this packet,
but tcpdump not alarm this :
383:
08:40:18.127813 IP (tos 0x0, ttl 105, id 35774, offset 0, flags [none],
length: 40) 61.153.209.26.80 > 2.3.4.166.16879: S [tcp sum ok]
3768285676:3768285696(20) ack 3053624288 win 8760
372:
08:40:18.127813 61.153.209.26.80 > 2.3.4.166.