Hi, The first 3 packets are corrupted according to wireshark. As soon as I read the first packet with pcap_next(), my application gets a coredump.
Is it an expected behavior? If not, what's the correct/better usage to get around it? Thanks in advance. Cheers, Hei P.S. I am using libpcap 1.4.0 if it matters. _______________________________________________ tcpdump-workers mailing list tcpdump-workers@lists.tcpdump.org https://lists.sandelman.ca/mailman/listinfo/tcpdump-workers