Not a thought but a comment. Last time I was familiar with the workings of the Gigabit Sniffer product (I am less so now because my employer is no longer a reseller of Sniffer)there were some real performance limitations to running a Gig capture with the Expert option enabled. I'm guessing that...
Thanks for the suggestion - not sure of she's tried this yet. We now have an open incident ticket with Watchguard support but thus far now answers. If/when we see success or confirm lack of same I'll post here to that effect. I might just have to send Watchguard a sample unit to let them test...
Hello to all. I'm new in this group but am a long time participant in the Sniffer Tek-Tips forum. I'm an SE for a hardware manufacturer that makes network taps among other products. Our 1/100 aggregation style tap is a relatively simeple device and the only issues I've encountered with end user...
Dogsbod asked: "If I placed a server on a hub and a pc with say ethereal on the same hub and then switch( used by lan) on 3rd port of hub monitoring all traffic between servers and rest of the network, will this cause a performace decrease, also is this the correct way to monitor traffic...
Have you looked at at the Ipswitch "Whats Up for Small Business" product? It's obviously far more limited than something like a Sniffer but is inexpensive and widely used for broad overview type monitoring in small networks.
Owen O'Neill
Datacom Systems Inc.
Northeastern SE...
If I recall correctly, the option in Probeviewer to configure the DS Pro appliance for NHC has been dropped as of either v4.35 or v4.5
I don't recall whether NHC ever made a separate Windows compatible utility for conytrling the STAKitbut if they did it's not likely still be available - they've...
I'm afraid I'll have to defer to folks with more hands on experience than I have. Much of this I know and understand from the theoretical side by virtue of my job as a sales engineer but my practical expeirnec is limited. I have also been away from hands-on work with Sniffers for nearly three...
You asked
"i am a bit confused on the oversubscribe thing."
The term "oversubscription" is typically used to refer to a SPAN or mirror port that has too much traffic copied to it, for example, when a busy VLAN or VLAN's have traffic that greatly exceeds the 1 gig output capacity of the...
So do you mean that you're actually passing the traffic from a trunked link through the monitor card and the capture card? In other words, are you actually using the Sniffer "in-line" so that all traffic passes through it?
If so, I should think that no filters would be necessary and you would...
Can you clarify a bit more? Are you looking to monitor all the VLAN traffic coming into and out of the switch to which the Gig Sniffer is presently connected? If that's the case you should consider putting a tap into that connecting link. Best to use a conventional tap (not the aggregation...
Yes it still is offered. It appears that the course schedule, certification structure and Sniffer University curriculum appears to be prety much the same under the new Network General as it was under NAI.
Here's a link for registering to take the exam at a Prometric location near you...
Not sure what you mean by "pass". I searched SAdtran's web site and can't find the 1127R. Is it a network switch or some kind of a router/access device?
There are typically two methods used for sniffing VLAN's
1) connect Sniffer to SPAN or mirror port of a network switch (e.g. Cisco or...
Sounds like you may need a Sniffer to fix your Sniffer problem!!! {;-)
Perhaps you could put a tap or small shared media hub in the link that connects transport card of the Agent box to the network and connect a portable Sniffer (or any PC running Ethereal)). Do the same thing at the console...
The newest Sniffer builds (including images that you get from NetGen) have a variety of things done to the BIOS and the OS that are intended to increase efficiency and harden for security reasons. It may be one of these that's causing the issue? Also check to see if your perimeter security has...
I have not seen it before but have the impression that v4.2 r3 and v4.35 are both more stable than v4.3
Have you tried upgrading a working box to v4.35 or asking them for a v4.35 image? It might be worth a try.
Owen O'Neill
Datacom Systems Inc.
Northeastern SE
http://www.datacomsystems.com
If you have the software only version of Sniffer Distributed there most likely won't be a problem provided the OS is the same on the original box and also the one you ghost onto. If you try to ghost an image of a turnkey Sniffer appliance onto a non-Sniffer appliance you may have problems
1)...
I have not stumbled across one and furthermore .... it's a stringent requirement. We were settign up 4.35 on a test box for compatibility testing with peripherals and discovered that a PC with 512 meg RAM was failing the test. 512 is the stated minimum but there was about 14 meg being used by...
Re the comment "I can't get a good "read" on how much of my traffic is this application's since the ports are all over the place".
Please bear with my ignorance as I haven't been using the latest Distributed Sniffer releases but am I correct in remembering that the newer versions of Sniffer...
All ODBC related tasks or executables that run in the background must be turned off or stopped from running in order to install Console.
Be sure to check all Services and Process that are running in the background and turn off any that need to be off for Sniffer to install.
Owen O'Neill...
Have you tried Ethereal? Ethereal will definitely let you see all the satandard protocols in three views, just as like the sniffing software that you pay for. It shows the summary view of all packets in the capture, the individual packete decode and also a screen with the actual hex...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.