Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] abt TCP checksum

From: "Luis EG Ontanon" <luis@xxxxxxxxxxx>
Date: Mon, 4 Aug 2008 16:48:59 +0200
That means that the checksum is correct: the two items bellow are
there to be able to filter for it using either "tcp.checksum_good" or
"tcp.checksum_bad".

BR
\Lego

On Mon, Aug 4, 2008 at 2:24 PM, rama krishna <sramu28@xxxxxxxxx> wrote:
> Hi all
>
> I am using wireshark 1.0.2 for sniffing.
>
> When i examine packets captured, for some packets it says
>
>  (for TCP Header-----)
> checksum: correct
>    good checksum : correct
>    bad checksum : false
>
> I could not understand what are these good checksum and bad checksum and how
> these are known.
> Even though it shows checksum is correct, why it gives that comment?
> any help?
>  Thanks in advance.
>
>
> Regards
> Ramu.
>
>
>
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> https://wireshark.org/mailman/listinfo/wireshark-users
>
>



-- 
This information is top security. When you have read it, destroy yourself.
-- Marshall McLuhan