Wireshark-bugs: [Wireshark-bugs] [Bug 1136] TCP checksum validation

Date: Sat, 31 Mar 2007 09:26:21 +0000 (GMT)
http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1136





------- Comment #6 from sake@xxxxxxxxxx  2007-03-31 09:26 GMT -------
OK, wireshark calculates the TCP-checksum according to RFC 1071 (which is
recommended in RFC 1624). However, there are systems that recalculate the
checksum themselves (ie set the tcp-checksum-field to 0x0000 before doing the
one-complements sum). These systems will drop the packet since they will expect
the checksum to be 0x0000 in the packet instead of 0xffff.

I think wireshark should treat these checksums as bad, with a reference to RFC
1624. I will try to write a patch :)


-- 
Configure bugmail: http://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.