I run tcpdimp on our network traffic and got through wireshark a lot of TCP traffics with the info TCP segment of a reassmbled PDU.
The problem is, TIM doesnt seems to analyze the network packets with the message TCP segment of a reassemled PDU. In fact I am not getting any transactions discovered for those packets, even if they containg valid URL info.
Any advise on how to deal with these type of packets?
Thanks,
Luke