----- Original Message -----
Sent: Thursday, December 03, 2009 8:58
PM
Subject: [Wireshark-users] Number of
connections to host IP address?
I've been asked to find out if Wireshark has the ability to determine the
active number of connections at a given time? For example, If
I perform a capture of all traffic to/from our DB server from 3pm to
4pm, is there anyway to tell how many active
connections there were to the DB IP address at 3pm, 3:15pm,
3:30pm, etc.?
The problem we're trying to solve here is that there appear to be
far too many connections to this server at certain times during the day and
the server admins believe that someone is attacking the server in someway
and have asked me to investigate for any anomalies
Thanks!
___________________________________________________________________________
Sent
via: Wireshark-users mailing list
<wireshark-users@xxxxxxxxxxxxx>
Archives:
http://www.wireshark.org/lists/wireshark-users
Unsubscribe:
https://wireshark.org/mailman/options/wireshark-users
mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe