Wireshark-users: [Wireshark-users] TCP ACKed lost segment on apple xserver

From: Aaron Evans <aaronevans@xxxxxxxxxxxxxxxxx>
Date: Mon, 27 Apr 2009 13:40:21 -0500
I'm trying to track down what is eating up all of my bandwidth.  I'm using
cacti to monitor network traffic and found a server that for a lack of
better description hemorrhaging data.  I've got hp procurve 5406zl's that
I'm using to mirror traffic to my sniffer machine and blocking all other
switch traffic to the sniffer port.  Over the course of a twenty second
capture (27,000~ packets), roughly 35% of my traffic is the [TCP ACKed lost
segment] afpovertcp > 49278.  Any advice on this is welcome.  I suspect I
have a failing NIC on my server but would like some expert opinions before
ordering a new system board.  Thanks in advance
--
Aaron Evans
Network Support Specialist
USD 491