Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] TCP option

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: Guy Harris <guy@xxxxxxxxxxxx>
Date: Thu, 4 Oct 2007 15:07:00 -0700


On Oct 4, 2007, at 1:56 AM, Billie Chan wrote:

Any idea how come 12 bytes tcp.option occur?

Because the TCP implementation on the machine sending the TCP segment decided to add that option to the TCP segment.

What option is it? We'd need to know in order to try to guess why it's being added.

  • References:
    • [Wireshark-users] TCP option
      • From: Billie Chan
  • Prev by Date: Re: [Wireshark-users] TCP option
  • Next by Date: [Wireshark-users] tshark: print x number of bytes at arbitrary offset?
  • Previous by thread: Re: [Wireshark-users] TCP option
  • Next by thread: [Wireshark-users] Estimate tcp packet loss from receiver end only
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation