04-02-2013 08:00 PM - edited 03-07-2019 12:36 PM
Hi.
I operate between c6509-E,
what did you flooding?
its just packet capture gi1/3 but i dont know it and is it attack?
also same seq no switch gots it
what is problem?
thank you.
04-02-2013 09:21 PM
Do you know about tcp.analysis.flags and tcp.analysis.window_update?
04-03-2013 02:35 AM
Hello,
They are just TCP filters in wireshark
http://www.wireshark.org/docs/dfref/t/tcp.html
Here is some tutorial about TCP, part #8 and #9 may be interesting for you.
http://www.firewall.cx/networking-topics/protocols/tcp.html
Some other interesting articles:
http://www.lovemytool.com/blog/2010/07/practical-tcp-series-tcp-flags-by-chris-greer.html
http://www.lovemytool.com/blog/2010/07/practical-tcp-series-the-tcp-window-by-chris-greer.html
Best Regards
Please rate all helpful posts and close solved questions
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide