When I take a dump of network traffic and save in the .pcap file. I load that pcap file in the wireshark for analyzing and what I find is there is a re-transmission of the tcp packet in the wireshark. Question: What my question is why the re-transmission is showing up in the wireshark. Didnt the TCP took care of the re-transmission. asked 18 Feb '16, 15:22 fixmessenger edited 19 Feb '16, 02:35 grahamb ♦ |
One Answer:
Yes, that's why you see it. Wireshark shows what was recorded, and if there was packet loss TCP sent a retransmission that got recorded, too. Wireshark is not hiding anything. answered 18 Feb '16, 15:24 Jasper ♦♦ |