Network Computing is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them. Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Protocol Analyzers: Page 5 of 7

If you're tapping into wireless connections and Ethereal supports your wireless NIC, the open-source analyzer will be of some benefit. It won't decode the wireless protocol, but if you need to decode only Layer 3 and above, it will do fine. If your network uses WEP, a commercial product will help you troubleshoot by letting you enter the WEP key to see data.





Gotchas



Click to Enlarge

When tapping into high-speed connections, especially near the backbone, you'll need a hardware-based product. Probes with hardware acceleration can reliably filter and capture packets on a highly used connection. This is especially important for a Gigabit backbone.

Today, with most networks using switching, tapping into the data stream isn't as easy as it was when everything was shared. But there are still ways to do it, even if you don't have a high-end probe:

>> Run an analyzer on the client. This will let you see packets from the client's perspective, though you'll have to install the analyzer on the desktop. One disadvantage of this approach is that it's difficult to bring the analyzer files back with you for later analysis.