<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic packet monitoring in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/packet-monitoring/m-p/2808699#M83722</link>
    <description>Some time ago, I was using software that sniffed packets on my network, and presented a graphical screen that showed all the NICs on the network, with lines showing which hosts were talking to which.  It also gave reports showing which NICs were sending the most packets, receiving the most, etc.&lt;BR /&gt;&lt;BR /&gt;Over time I've gone to a switched network, and now the switches hide all that traffic; the software only reports what it can see.&lt;BR /&gt;&lt;BR /&gt;The question is, is there still a method for me to monitor the same thing, on a switched network?&lt;BR /&gt;&lt;BR /&gt;It helped me pinpoint bad NICs, network-noisy software and bad users, and I really miss it.&lt;BR /&gt;</description>
    <pubDate>Wed, 18 Sep 2002 12:47:49 GMT</pubDate>
    <dc:creator>Fred Martin_1</dc:creator>
    <dc:date>2002-09-18T12:47:49Z</dc:date>
    <item>
      <title>packet monitoring</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/packet-monitoring/m-p/2808699#M83722</link>
      <description>Some time ago, I was using software that sniffed packets on my network, and presented a graphical screen that showed all the NICs on the network, with lines showing which hosts were talking to which.  It also gave reports showing which NICs were sending the most packets, receiving the most, etc.&lt;BR /&gt;&lt;BR /&gt;Over time I've gone to a switched network, and now the switches hide all that traffic; the software only reports what it can see.&lt;BR /&gt;&lt;BR /&gt;The question is, is there still a method for me to monitor the same thing, on a switched network?&lt;BR /&gt;&lt;BR /&gt;It helped me pinpoint bad NICs, network-noisy software and bad users, and I really miss it.&lt;BR /&gt;</description>
      <pubDate>Wed, 18 Sep 2002 12:47:49 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/packet-monitoring/m-p/2808699#M83722</guid>
      <dc:creator>Fred Martin_1</dc:creator>
      <dc:date>2002-09-18T12:47:49Z</dc:date>
    </item>
    <item>
      <title>Re: packet monitoring</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/packet-monitoring/m-p/2808700#M83723</link>
      <description>Depends on the switch but some of them have a method of sending traffic destined to other ports to an admin-designated monitor port.  Usually, tho, this monitor port can not be a participant at the same time so the PC would have to be dedicated to just that one purpose.  &lt;BR /&gt;&lt;BR /&gt;On a Cisco switch the basic feature to allow you to monitor another port is called Switched Port Analyzer (SPAN) (an unfortunate choice of name since it gets confused with spanning tree which is something else entirely) however, this is limited to only one port.  To be able to monitor multiple ports (they have to be in the same VLAN) you need to have a switch and a version of operating software that can do Enhanced SPAN (E-SPAN).&lt;BR /&gt;&lt;BR /&gt;Ron</description>
      <pubDate>Wed, 18 Sep 2002 13:12:00 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/packet-monitoring/m-p/2808700#M83723</guid>
      <dc:creator>Ron Kinner</dc:creator>
      <dc:date>2002-09-18T13:12:00Z</dc:date>
    </item>
  </channel>
</rss>

