Wireshark-users: [Wireshark-users] Active Directory Replication Traffic

From: "Nik Alleyne" <Nik.Alleyne@xxxxxxxxxxxxxxxxxxx>
Date: Fri, 9 Oct 2009 08:40:23 -0400

Morning Guys,

I wish to monitor my Active Directory replication traffic generated by the server. Based on what I know, for intrasite replication, windows uses RPC (I do have a second domain controller in the site) and for intersite we are using IP. So I captured the traffic but having a problem isolating the RPC over IP traffic. When I do a summary I see RPC at more than one locations. What I’m hoping is you guys can tell me which protocols and or ports I should be looking for to help determine the bandwidth usage.

 

Oh, I’m using Wireshark 1.2

Thanks

Nik

 

 

 

 

Nik Alleyne | Systems Specialist, Information Technology

Maxxam Analytics | Driven By Service and Science®

 

Mobile: 416-906-0923 | Office: 905-817-5704

Fax: 905-817-5777

nik.alleyne@xxxxxxxxxxxxxxxxxxx