Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Ethereal-users: Re: [Ethereal-users] Bogus IP Header

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: "Gordon Graham" <gcgraham33@xxxxxxxxxxx>
Date: Fri, 17 Jun 2005 22:45:56 -0700
Thanks! I'll contact them. I appreciate the help.
Gordon

From: Guy Harris <gharris@xxxxxxxxx>
Reply-To: Ethereal user support <ethereal-users@xxxxxxxxxxxx>
To: Ethereal user support <ethereal-users@xxxxxxxxxxxx>
Subject: Re: [Ethereal-users] Bogus IP Header
Date: Fri, 17 Jun 2005 21:11:18 -0700

Gordon Graham wrote:
I just installed Ethereal today and am having trouble capturing packets properly. I am able to capture a series of packets but almost every one says "Bogus IP length 0 ..." or Bogus IP header ...".

In the packet details area the Frame information says something like (1514 bytes on wire, 28 bytes captured). Different frames have a different number of "bytes on the wire" but all seem to say 28 bytes captured. I've tried promiscuous mode and not promiscuous mode with the same results. Otherwise, I'm using all the default values.

I'm running on a Windows ME laptop

This is probably a WinPcap problem, and I suspect it might be a problem with some other software on your system. You should ask the WinPcap developers about this:

	http://www.winpcap.org/contact.htm

_______________________________________________
Ethereal-users mailing list
Ethereal-users@xxxxxxxxxxxx
http://www.ethereal.com/mailman/listinfo/ethereal-users