This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Wireshark showing timestamps header instead of SEQ/ACK analysis

0

Hello,

My wireshark is showing Timestamps after Options header in TCP instead of SEQ/ACK analysis. Where are the settings to change it?

Thanks

asked 27 Apr '15, 15:07

iWireshark's gravatar image

iWireshark
16557
accept rate: 0%


2 Answers:

0

You will not see "[SEQ/ACK analysis]" in the SYN packet of a TCP connection, but you should see it in all other packets. If not, go to Edit > Preferences > Protocols > TCP and enable "Analyze TCP sequence numbers."

answered 27 Apr '15, 23:07

Jim%20Aragon's gravatar image

Jim Aragon
7.2k733118
accept rate: 24%

edited 28 Apr '15, 01:25

0

So you are saying you do not see [SEQ/ACK Analysis] field after the TCP timestamp option?
You need to enable 'Display hidden protocol items' in Edit - Preferences - Protocols to make those visible. But it is not a 'instead', you will still see the TCP timestamp option.
alt text

answered 27 Apr '15, 21:30

mrEEde's gravatar image

mrEEde
3.9k152270
accept rate: 20%