Comment # 2
on bug 10337
from Sam
I'm not reading a capture file. I launch Wireshark, start a live capture, and
then visit google.com in Firefox. Wireshark displays the TCP traffic with
"www.google.com" (or other google names) in the Source or Destination columns.
Oh wait! After a few minutes, I reloaded google.com in Firefox, and the new
traffic is displayed with IP addresses instead of "www.google.com". I'm still
running the same live capture, and haven't changed any settings.
Oh wait! After a few more minutes, I reloaded google.com, and Wireshark has
resumed displaying "www.google.com". I'm still running the same live capture.
I scroll up and down the long list of captured packets, and I see a mixture of
IP addresses, "www.google.com", IP addresses, "www.google.com", etc.
Something seems intermittent!
In Edit > Preferences > Name Resolution, I have enabled Resolve MAC address,
Resolve network IP address, Enable concurrent DNS name resolution, and Only use
the profile hosts file. All others options on this preference page are
disabled.
My Windows hosts file and Wireshark hosts file contains only local machine
nicknames such as "192.168.1.117 Colossus" and "192.168.1.20 CanonPrinter".
Sorry, I'm fuzzy trying to understand your "one of the other cases above".
Wireshark 0.10.8, when configured to the same Name Resolution preferences,
never display "www.google.com" or other resolved internet names.
You are receiving this mail because:
- You are watching all bug changes.