tcpflow
tcpflow copied to clipboard
incorrectly reassembling tcp stream
I haw TCP stream with lots off retransmits and when I try to extract specific flow that flow is corrupted. (it is JPG so I can see) When I select tat same flow in Wireshark and do follow tcp stream save raw, stream is OK (JPG). I can provide stream via email.
Please send to [email protected]
Sent from my phone. Please Call me at 202-322-8411 if you wish a longer response.
On Feb 6, 2014, at 10:40 AM, ibeex [email protected] wrote:
I haw TCP stream with lots off retransmits and when I try to extract specific flow that flow is corrupted. (it is JPG so I can see) When I select tat same flow in Wireshark and do follow tcp stream save raw, stream is OK (JPG). I can provide stream via email.
— Reply to this email directly or view it on GitHub.
It seems that PCAP contains double captured data, so basicly tcpflow is working OK.
It should do a better job in this situation. May I add the PCAPs to the repository as a test case?
Yes