ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: [Wireshark-users] Dropped Frames - Keepalive?

From: "bmcmanus" <bmcmanus@xxxxxxxxxxxxxx>
Date: Thu, 14 Feb 2008 10:27:09 -0500
We have a RAD IPMux device which reports dropped packets (irregular, but approx. 2 to 10 every 5-20 seconds) only on one
of the ethernet switch ports.  Tech support for the device indicates that those are keepalive frames, such as SQE.
(Note: no Cisco in this network)

We see no keepalive frames or dropped frame indications either to or from that port using Ethereal v0.99.0 on a
NetOptics full duplex tap.  Tech support says that we will not see the ethernet keepalive frames using
Wireshark/Ethereal.

Is that true?  Are those hidden packets of some sort?  Will a later version or special configuration allow us to see
them?

Can anyone suggest other traffic which might be dropped in this manner and which might not appear on a capture (e.g.,
protocol not enabled by default)?  The link services only SNMP and ping-based network monitoring and a StarTech
serial-over-IP link.

Best Regards,
Jon "Buddy" McManus
Wireless Communications, Inc.