Here's one:
20:51:54.937435 IP (tos 0x0, ttl 18, id 28358, offset 0, flags [none], proto IPIP (4), length 60) 75.101.96.109 > 169.228.66.251: IP truncated-ip - 30268 bytes missing! (tos 0x0, ttl 64, id 28357, offset 0, flags [DF], proto TCP (6), length 30308, bad cksum edf2 (->77b6)!) 44.4.39.8.6178 > 91.230.47.38.55979: Flags [R.], seq 0:30268, ack 814823413, win 0, length 30268 [!RST+ \0x00]
Notice that it has no data payload, it's just packet headers. - Brian
On Wed, Apr 26, 2017 at 09:48:12PM -0600, Andrew Ragone wrote:
Could you grab a pcap of the packet? Andrew