Packet Fragmentation detection with WireShark

I was told by a colleague that he was seeing packet fragmentation but I couldn’t identify this is the trace I was using. This is because by default wireshark re-assembles packets in order to have expert decode the entire packet –

You need to go into the wireshark preferences >;; protocols >;; ipv4 and uncheck the Reassemble fragmented ipv4 datagrams

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s