thank you both. i only looked for tcp.flags.psh in the flags. But sure, the non abbreviated tcp.flags.push works like expected. my fault. just at the beginning with wireshark and tcp'ing.
thx for the fast help! _______________________________________________ Wireshark-users mailing list Wireshark-users@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-users _______________________________________________ Wireshark-users mailing list Wireshark-users@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-users