Yes, > If you only filter on ip-addresses you should be fine though :)
It now works. Tcpdump "dumps" all fragments and these are correctly re-assembled by wireshark and by the tool to produce the message flow. Thanks again, all the helped so quickly. -Franz _______________________________________________ Wireshark-users mailing list Wireshark-users@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-users