Wireshark-users: Re: [Wireshark-users] Wiring Mess

From: Andrew Gallo <akg1330@xxxxxxxxx>
Date: Fri, 22 Jan 2010 08:47:10 -0500
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 1/22/2010 8:23 AM, Paul Marsh wrote:
> I'm trying to help out a non-profit with a wiring closet mess.  We need
> to figure out what ports go to what offices.  Rather than toning each
> port out couldn't wireshark help?  I was thinking if each workstation
> was configured to spit out specific packets I could sniff each port on
> the switch to see what workstation belonged to which port.  Any ideas?
> 
> TIA
> ___________________________________________________________________________
> Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
> Archives:    http://www.wireshark.org/lists/wireshark-users
> Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
>              mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe


Two options I see:

Make a matrix of mac addresses to jack number/office numbers and then
look at the switch's CAM table.  You'll then see what port goes to what
office.

If the switch is running spanning tree, you could sniff each port and
look at the source MAC of the BPDU.  This should be the MAC address of
the connected switchport.

Good luck.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAktZrF0ACgkQQr/gMVyFYyRL4gCfXwN6jt1Pip3IbF4M6MvjReRw
RkAAnRfIyW2M9pQwxQ5lCJ9LxrYjqvlb
=2QaB
-----END PGP SIGNATURE-----