sniffer抓包分析讲解
Troubleshooting the Network Troubleshooting Flowchart Section Objectives After completing this section, you will be able to: Configure and enable alarms to immediately identify problems in the network Start, stop, and save a Sniffer Portable capture Use Sniffer Expert analysis to troubleshoot the network Customize a capture session using filters Apply triggers to capture data atselected times or based on errorconditions Troubleshooting Techniques Implement a program for change control Perform a baseline analysis at regular intervals When trouble occurs, use systematic techniques to isolate and correct problems Develop a hypothesis, but don’t get “tunnel-vision” Repair one thing at a time and test all fixes thoroughly Document your discoveries and conclusions What’s your strategy? Establish a Baseline Statistical characterization of your critical segments Understand and predict growth patterns Intelligently plan for hardware and software implementation Basis for comparison when problems occur Response time measurements of regular events Quantify the user’s view of the network in real numbers Track performance levels for frequently used tasks and protocols Compare history with current events when response time degrades Topology diagrams updated regularly Maintain visual control of your physical network Use as a visual reference when considering changes A basis for continuity when personnel come and go Decrease wasted time if consulting services are necessary Baselining Procedures 1. Implement a regular schedule for baselining that includes high, medium and low periods of network utilization. 2. Monitor for a standard period of time (10 minutes for example) and record statistical measurements. 3. Capture and filter on a particular network station. 4. Execute a predetermined set of procedures and commands that will provide the necessary command/response combinations. Document those response times. 5. Record conclusions taken from expert systems. 6. Update segment di