Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] abt TCP checksum

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: "Luis EG Ontanon" <luis@xxxxxxxxxxx>
Date: Mon, 4 Aug 2008 16:48:59 +0200

That means that the checksum is correct: the two items bellow are
there to be able to filter for it using either "tcp.checksum_good" or
"tcp.checksum_bad".

BR
\Lego

On Mon, Aug 4, 2008 at 2:24 PM, rama krishna <sramu28@xxxxxxxxx> wrote:
> Hi all
>
> I am using wireshark 1.0.2 for sniffing.
>
> When i examine packets captured, for some packets it says
>
>  (for TCP Header-----)
> checksum: correct
>    good checksum : correct
>    bad checksum : false
>
> I could not understand what are these good checksum and bad checksum and how
> these are known.
> Even though it shows checksum is correct, why it gives that comment?
> any help?
>  Thanks in advance.
>
>
> Regards
> Ramu.
>
>
>
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> https://wireshark.org/mailman/listinfo/wireshark-users
>
>



-- 
This information is top security. When you have read it, destroy yourself.
-- Marshall McLuhan

  • References:
    • [Wireshark-users] abt TCP checksum
      • From: rama krishna
  • Prev by Date: Re: [Wireshark-users] IPDR
  • Next by Date: Re: [Wireshark-users] IPDR
  • Previous by thread: [Wireshark-users] abt TCP checksum
  • Next by thread: Re: [Wireshark-users] IPDR
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation