Good afternoon, I'm trying to look inside a EIGRP Update packet that is encapsulated over a DMVPN solutions (GRE and ESP with ESP-NULL set). For whatever reason the Data part of the EIGRP is garbage. Any ideas how to fix this problem? Does Wireshark have a limitation on how far it can look inside an IP packet? Thanks G. asked 13 Oct '11, 11:54 calin_112 edited 13 Oct '11, 11:56 |
One Answer:
Hi, From dev mailing list Hi, I'm looking at en NULL encrypted ESP payload, trying to display it in Wireshark, in order to do so The preferences "Attempt to detect/decode NULL encrypted ESP payloads" must be "ticked" ( No supprise) "Attempt to detect/decode encrypted ESP payloads" must be "un-ticked" is that realy corrrect? Or should this patch be applied?
answered 13 Oct ‘11, 14:44 Anders ♦ edited 14 Oct ‘11, 05:47 multipleinte… |
Same problem with EIGRP over GRE.