I
I
Igor Petrov2017-04-11 06:49:37
Nginx
Igor Petrov, 2017-04-11 06:49:37

How to block Reassembled TCP data?

Good day!
There is a dump, when opening it through Wireshark, there is a Reassembled TCP Data field
. Is it possible to somehow block this header using iptables, or using nginx?
4862254674e2412391c110c56b566539.png

Answer the question

In order to leave comments, you need to log in

2 answer(s)
P
Puma Thailand, 2017-04-11
@opium

In nginx, it’s definitely not in the firewall, look at extended xtables, if the date is the same, you can definitely

R
Rsa97, 2017-04-11
@Rsa97

What makes you think it's some kind of headline?
It's just WireShark telling that this TCP packet containing 437 bytes of data was split into two frames, #87, 62 bytes long, and #110, 375 bytes long. Wireshark, when analyzing, collected these frames back into one packet, which it shows.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question