searching pcap file
searching pcap file
- Subject: searching pcap file
- From: Scott Ribe <email@hidden>
- Date: Wed, 02 Sep 2015 10:05:16 -0600
So I've got a pcap file. What tool could I use to perform the following kind of search:
for a particular machine, find all instances where any other machine sent a packet, and received a response more than x seconds later
Background: bad connectivity problems, network guys are claiming my server is so slow responding is why clients are disconnecting all the time. No recent server changes. Problems started immediately after they upgraded their firewall. Hrmmm. So I need to find instances of "slow responses" from their logs they sent me, and then correlate them to packet captures we'll take on our side of the firewall, and establish definitively where the delay is.
--
Scott Ribe
email@hidden
http://www.elevated-dev.com/
https://www.linkedin.com/in/scottribe/
(303) 722-0567 voice
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Macnetworkprog mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden