Wireshark-users: Re: [Wireshark-users] Using with a switch

From: HBooGz <hboogz@xxxxxxxxx>
Date: Thu, 31 Aug 2006 10:05:19 -0400
so if you were to setup wireshark on a machine, i would need two NIC's on the machine that has wireshark running and have each NIC connecting to a respective port on the 3com 5xxx switch.

one port would be setup as the monitor port and one setup as the mirror-port --- how was your 3com setup look like ?

Thanks,

On 8/31/06, Petr Vácha <vacha@xxxxxxxxxxx> wrote:
FYI,
3Com 4xxx line names this as Feature->Roving analysis.
3Com 5xxx line uses terms Monitor port for ports to which you connect your sniffer and Mirroring-port for ports that send data to monitor port.

Petr

> -----Original Message-----
> From: wireshark-users-bounces@xxxxxxxxxxxxx
> [mailto: wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of
> Craig Wicker
> Sent: Wednesday, August 30, 2006 5:01 PM
> To: Community support list for Wireshark
> Subject: Re: [Wireshark-users] Using with a switch
>
> Different vendors label this action different things:
> SPAN Port
> Mirror Port
> Monitor Port
>
> My Cisco 4510R statement goes like this; your syntax may vary; and all
> commands listed below are given from the Executive mode:
> monitor session 1 source interface G4/10
> monitor session 1 destination interface G5/10
>
> [where source is the interface I wish to capture from;
> where destination is the interface I have plugged into with WireShark]
>
> show monitor session 1 (all)
> no monitor session 1
>
>
>
> Craig Wicker
> Hooker Furniture Corp
> Network Administrator
>
>
> -----Original Message-----
> From: wireshark-users-bounces@xxxxxxxxxxxxx
> [mailto:wireshark-users-bounces@xxxxxxxxxxxxx ] On Behalf Of Nathan J.
> Churchill
> Sent: Tuesday, August 29, 2006 3:01 PM
> To: wireshark-users@xxxxxxxxxxxxx
> Subject: [Wireshark-users] Using with a switch
>
> Hello:
>
> Our network runs with a switch.  Can Wireshark pick up all
> the connected
> stations?  I'm only seeing my own machine's traffic now.  Can that be
> changed?  If so, how?
>
> Thanks.
>
> Regards,
> Nathan
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-users
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-users
>
_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users



--
HBooGz:\>