Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] TCP Previous segment lost > connection lost (bank transact

From: Bart Greyson <sonofgrey@xxxxxxxxx>
Date: Wed, 8 Apr 2009 14:17:45 +0200


On Wed, Apr 8, 2009 at 1:36 PM, Sake Blok <sake@xxxxxxxxxx> wrote:
On Wed, Apr 08, 2009 at 12:59:40PM +0200, Bart Greyson wrote:
>
>    I installed Wireshark to see what is being sent back and forth between the
>    PCCharge software (VeriFone) and the bank. It looks like a package got
>    lost, but I'm new to this kind of deep debugging, so if someone can tell
>    me what's happening here, that would be great!
>
>    When the transaction fails I get these messages:
>
>    8705    2009-04-07 20:24:27.689549    192.168.1.64    192.168.1.254
>    DNS    Standard query A sslgw1.53.com
[...]
>    8726    2009-04-07 20:25:05.595049    64.57.146.209    192.168.1.64
>    TCP    https > wg-netforce [RST, ACK] Seq=2516 Ack=832 Win=0 Len=0
>
>    Can anyone tell from these messages what went wrong and what might be the
>    cause?

It would be helpful to have this data as a binary capture file. Could
you post a binary capture file with packets 8705-8726 of the original
file?

Cheers,
     Sake


Hi Sake,

I don't know exactly where I can turn this data into a "binary capture file" in Wireshark. I uploaded it in a more detailed form if that's what you wanted: http://www.greyson.be/capt.txt.

Thanks!