This is our old Q&A Site. Please post any new questions and answers at

Hi Guys,

I'm quite new to wireshark but i am using it to try and diagnose an issue with have with data loss from client to server. I am see a lot of the following lines in the capture and wondered if anyone could help explain what they are:

"21618","5135.427497","","","TCP","[TCP segment of a reassembled PDU]" "21619","5135.427510","","","TCP","[TCP Dup ACK 21618#1] 34560 > ssh [ACK] Seq=302100 Ack=953008 Win=49640 Len=0 SLE=954468 SRE=955928" "21620","5135.517490","","","SSHv2","[TCP Previous segment lost] Encrypted response packet len=1460" "21621","5135.517525","","","TCP","[TCP Dup ACK 21618#2] 345

60 > ssh [ACK] Seq=302100 Ack=953008 Win=49640 Len=0 SLE=957388 SRE=958848 SLE=954468 SRE=955928"

Any ideas? I'm a little concerned about the lost segments should i be?

asked 10 Oct '12, 02:43

malli_mmk's gravatar image

accept rate: 0%

closed 10 Oct '12, 13:18

Kurt%20Knochner's gravatar image

Kurt Knochner ♦

The question has been closed for the following reason "Duplicate Question:" by Kurt Knochner 10 Oct '12, 13:18

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here



Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text]( "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:


question asked: 10 Oct '12, 02:43

question was seen: 4,068 times

last updated: 10 Oct '12, 13:18

p​o​w​e​r​e​d by O​S​Q​A