Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: [Wireshark-users] Questions about packets?

From: James Ortega <admiral.ross@xxxxxxxxx>
Date: Fri, 12 Oct 2007 11:36:17 -0700 (PDT)
Hello All!

I run a sys-log and sending all of the info to mysql.  Does wireshark have this ability to send data to mysql or read from it and provide analysis?

Also, I'm getting a lot of dropped packets and I don't know exactly what they are?  I've asked around and no one has a clue.  Hopefully, here someone will have more insight.  Once I find out what it is I'd like to get rid of it.

DROP IN=eth1 OUT= MAC=ff:ff:ff:ff:ff:ff:00:01:5c:24:0f:42:08:00 SRC="" DST=255.255.255.255 LEN=407 TOS=0x00 PREC=0x00 TTL=64 ID=14603 PROTO=UDP SPT=67 DPT=68 LEN=387 <000>

It looks like dhcp broadcast packets.  But if that is the reason, why would my router want to drop them?  As of todays count I have 11,536 entries in my syslog.

Any help would be appreciated
.
Admiral Ross 


MSN: admiral.ross, Y!: admiral.ross, AIM: admiralwross
http://r-loc-one.com, http://stb575.com