Log is missing for packet No.15.
There are 20 packets in test.pcap file on Wireshark, but only 19 records in the log file output by zeek.
Then I noticed that No.18 was divided into No.15, No.17 and No.18. But there was no output for No.15.
For further confirmation, I output this pcap by tshark, and No.15 was in the log.
To reproduce
Run zeek-Cr test.pcap /usr/local/zeek/share/zeek/site/icsnpp-bacnet/main.zeek
Expected behavior
Expect all packets can be output in the log.
Is there any reason why there is no log for packet No.15 ?
🐛 Summary
Log is missing for packet No.15. There are 20 packets in test.pcap file on Wireshark, but only 19 records in the log file output by zeek. Then I noticed that No.18 was divided into No.15, No.17 and No.18. But there was no output for No.15. For further confirmation, I output this pcap by tshark, and No.15 was in the log.
To reproduce
Run zeek-Cr test.pcap /usr/local/zeek/share/zeek/site/icsnpp-bacnet/main.zeek
Expected behavior
Expect all packets can be output in the log. Is there any reason why there is no log for packet No.15 ?
Any helpful log output or screenshots
log output by zeek
Add any screenshots of the problem here.
test.pcap test.pcap.zip