Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: [Wireshark-users] "Follow TCP Stream" feature question

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: "Wright, John" <John.Wright@xxxxxxxxxxxxx>
Date: Mon, 8 Dec 2008 10:34:23 -0500

Wireshark experts
When I select a frame in the wireshark capture and then select the "follow the TCP stream" feature for that frame; what exactly am I seeing in that "follow the TCP stream" display?
Is the resulting display the whole TCP conversation between the two end points or is it just that one frame that I am seeing?
 
I am trying to figure out why two particular devices on our LAN have so many TCP retrans when they are talking to one another. 
 
 
 

 Confidentiality Notice:  This e-mail message, including all accompanying documents, may contain information which is confidential, privileged or otherwise protected from disclosure under law. The information is intended only for the person(s) to whom it is addressed. If the recipient of this e-mail is not the designated recipient or the employee or agent responsible for delivering this e-mail to the designated recipient, you are hereby notified that any use, review, disclosure, copying, distribution, alteration or manipulation of this e-mail or its contents is strictly prohibited. If you have received this e-mail in error, please notify the sender and delete the e-mail from your computer system immediately.

KBCDISv1

  • Follow-Ups:
    • Re: [Wireshark-users] "Follow TCP Stream" feature question
      • From: Prigge Scott
    • Re: [Wireshark-users] "Follow TCP Stream" feature question
      • From: j . snelders
  • Prev by Date: Re: [Wireshark-users] TFTP Opt.Ack. not automatically decoded inone instance
  • Next by Date: Re: [Wireshark-users] "Follow TCP Stream" feature question
  • Previous by thread: Re: [Wireshark-users] TFTP Opt.Ack. not automatically decoded inone instance
  • Next by thread: Re: [Wireshark-users] "Follow TCP Stream" feature question
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation