Protocols / Routing :: How To Capture QOS (Quality Of Service) Filed From IP Packet
Aug 8, 2012I want to make packet sniffer which capture the IP packet and then extracting QOS filed from it's header
View 1 RepliesI want to make packet sniffer which capture the IP packet and then extracting QOS filed from it's header
View 1 RepliesI operate between c6509-E, what did you flooding? its just packet capture gi1/3 but i dont know it and is it attack?also same seq no switch gots it?what is problem?
View 2 Replies View RelatedI recently bought a Bose Soundlink bluetooth speaker and have paired it with both my ipod touch and ThinkPad w500. The iPod Touch sounds great, but the audio coming through the speaker via the w500 sounds like it is clipping, especially at normal-loud listening levels. Both the soundlink and the w500 have the latest bluetooth driver updates installed. The clipping occurs even when the main volume (and iTunes/Spotify) is turned down to 50% power.whether there is a way to reduce the "power" of the bluetooth signal so it does not cause the speaker to distort. Audio played through the speaker via 3.5mm from the w500 sounds great even at high volume.
Currently installed bluetooth drivers:
Bluetooth Enumerator (Microsoft)
ThinkPad Bluetooth 2.1 with Enhanced Data Rate (Broadcom)
Bluetooth Hands-free Audio (Broadcom)
Bluetooth Remote Control (Broadcom)
I have always done my port monitoring (SPAN) on Cisco layer 3 switches with no issues. This time I am trying to do this on a Cisco 2901 router:
Cisco IOS Software, C2900 Software (C2900-UNIVERSALK9-M), Version 15.1(4)M2, RELEASE SOFTWARE (fc1)
System image file is "flash0:c2900-universalk9-mz.SPA.151-4.M2.bin
I need to have the source port gig0/0 and destination port gig0/1. There is something about the gig port enumeration (slot/port#) that makes the command rejected. It is self explanatory:
#sh ip int brie
Interface IP-Address OK? Method Status Protocol
Embedded-Service-Engine0/0 unassigned YES NVRAM administratively down down
GigabitEthernet0/0 xxx.xxx.xxx.xxx YES NVRAM up up
GigabitEthernet0/1 unassigned YES NVRAM up up
Serial0/0/0:0 unassigned YES unset up up
[code]....
It doesn't matter what slot or port number I use, it is always rejected. The command is rejected for Both destination and source gig interfaces. I tried a wide variety of slot/port numbers. To my best understanding the complete port names are: GigabitEthernet0/0 and GigabitEthernet0/1, so why does it think there has to be another digit after 0/0 or 0/1? Does it have anything to do with the Embedded-Service-Engine0/0 being administratively down?
when performing packet capture in a FWSM
[code]...
How to get the packet format of CFM used in the provider backbone domain having ethertype (0x88e7) & Itag fields in it. I think wireshark doesnt have this code implemented yet.
View 1 Replies View RelatedI am trying to figure out how to setup quality of service on my network. At the moment i have computers connected to the PC port of my IP phone and the IP phone connected to the switch.I want the PC to stay on the default native VLAN and the phone to go on the VLAN 10I am using SNOM300 and SNOM360. I will configure the on the phone the VLAN ID and the priority.From my research, there are two ways that I can go about this on the port that is connected to the phone I canswitchport voice vlan vlan-idorswitchport voice vlan dot1pand then I will have to execute the commandmls qos trust cosmy question is which command do i use to configure the ports, and am I on the right track? Also, this is how I configure the ports that the IP phones are connected to, how do I configure the port that my Asterisk PBX server is connected to?
View 4 Replies View Relatedhave 2 routers connected in cluster ith serial dte link. screenis locked. I need to draw a topology of Internet cluster, but i don't know how to discover whats is in it, because i don't have set ip
View 2 Replies View RelatedI have a project about ISP in packet tracer,I want to know how to make firewall configuration and steps I don't know how to use firewall in packet tracer at all.
View 1 Replies View RelatedI have a piece of software that I suspect is sending unwanted data over the internet to some IP address. I'm not an expert in anything related to computer networks, but I figure I could use such software after playing around a little with it.What application could I use that would so the following:
a) capture all the bytes the application is trying to send out so that it seems to the application it is doing it and see the place it was trying to send it
b) after inspecting the data, if it was ok, send the packages to wherever it was supposed to go so that it seems the original application sent.
I'm trying to use EPC on ASR1001 running IOS-XE 3.4, and it won't work. Configuration commands are accepted by the router, but there are no packets in the capture buffer.In release notes for IOS-XE, in the 2.5 section, there is a statement that EPC is not supported on ASR1k. Is it true also for newer versions of IOS-XR?
View 1 Replies View RelatedI have a need to capture traffic on an ASR 1001 subinterface, but what I have found is that the Embedded Packet Capture feature is not supported on this platform. Are there any simple alternatives to capture egress traffic on a subinterface or am I SOL? This is a walk in the park on normal IOS routers...
View 1 Replies View RelatedIs this a wired or wireless connection issue? Both Who is your Internet Service Provider (ISP)? Comcast..What type of Broadband connection are you using? Cable..What is the exact Make and Model of your Modem, Router or Modem/Router Combo - (Main)Netgear WNR3700v2 / WNR2000v3(secondary) My current setup is the 3700 router is taking the internet from the modem cat5e and spewing the wireless. I would like to have the secondary router use the wireless from router 1 as the internet source and push the internet out of the 4 hardline ports so I can plug my upstairs xbox 360 into the router via cat5e. I'm just kinda new to this and still learning so I'm not sure how to configure the router to do this. I can get into the settings of the router just fine but finding the right settings to tweak is a little difficult.
View 3 Replies View RelatedI want to capture packet on gi0/0 of PE1 in order to show customer that all his traffic is encapsulated and transmitted by L2VPN (ldp signaling) in his lab.
CE1-----------(g0/1)PE1(g0/0)------------PE2-----------CE2
PE1 and PE2 are Cisco3945 and L2VPN is working well. I tried cisco RITE(Router IP Traffic Export Packet Capture) feature, but the output was not what I expected. I tried both export mode and capture mode. Only LDP hello message I got, looks like RITE is only interested in IP packet. Monitor session wasn't effective as well because it is not a switch.
Is there any other way/workaround to capture customer's traffic encapsulated in L2VPN?
What I did on PE1 when I was trying RITE export mode:
ip traffic-export profile test
bidirectional
[Code].....
I would like to capture packets which are going through an IPSEC tunnel. The packets originate in the appliance (syslog) and are sent to the remote via a VPN. I can see the encapsulated packets going out to the peer and I can see the ISAKMP packets to and from the peer. Because the packets originate within the appliance, they do not appear on any interface to be captured.
Is there some way to capture these packets before they are encapsulated?I attempted to capture packets on the asa-dataplane, but they are in a format that I cannot decode, and I cannot put a filter on the capture.
Hardware is ASA-5520
Software is version 8.3(2)
how to capture the incoming and outgoing packets on the balancer?The load balancer is connected in between the customer DCN and cisco switches 2960.The reason of capturing both incoming and outgoing packets on the balancer is to prove to our customer that there is no packet loss issue on the balancer, and it could be some issue on their DCN network.Since it is a production server, I will need to ensure that there is no impact to the incoming and outgoing traffic on the balancer and other networking equipments as well.
View 1 Replies View Relatedi have tryed starting it on the services but that willl not do it eitheir. i have tryed almost everything and it stilll does not work. i can not access internet. plus i think a virus messed up my internet protocols. i think i removed the virus though i have been looking for an answer for 7 hours now
View 1 Replies View RelatedATT notified my company we have a virus infected pc on one our networks which sits behind a Cisco ASA 5505 running 7.2(4). The set up is a basic inside/outside NAT configuration. They gave us the destination ip address and port which the our pc is contacting. I have been tasked to track down the infected pc. I created the following access-list and applied to the inside interface:
access-list VIRUS extended permit TCP ANY host x.x.x.x EQ YYYYY log debugging interval 600 access-group VIRUS in interface inside
I enable logging to the console whose output did not list the IP address of the infected pc, only the ip address of the DNS servers we were using. I then used the following capture commands to try locate the internal ip address of the infected pc:
capture in-cap interface inside access-list VIRUS-CAP buffer 1000000 packet 1522 capture in-cap access-list VIRUS-CAP interface inside
Neither step worked and the resulting console output overwhelmed the firewall in a very short period of time. Before attempting this task again, I would like to know if I am going about this the right way or if there is a better methodology?
Recently we have configured few of our routers to export FNF (Flexible NetFlow), some of our router are exporting NetFlow V9 packets with fields as mentioned in the NetFlow V9 RFC. We noticed that one router is exporting NetFlow V9 with the field value different from RFC. I have attached the screen shot which shows that Field 194 is assigned for TOS. Whereas according RFC it is 5. Is there any specifc reason begind this or this is an IOS related issue.
View 1 Replies View RelatedHad problems with voice quality on VoIP with 4500 series switches and the qos dbl feature (which gets enabled by the auto qos feature)?? I have had a couple of customer complaining about voice quality and our voice team spent a lot of time investigating; I had ruled out the network infrastructure because it was all QOS enabled. The voip people came up against a blank so I looked at the network once more and disbaled dbl with hope more than anything else. Mysteriously the voice quality issues the customer was having have now disappeared. Not sure whether a coincidence (though I have done this on two customers now) or something to with with dbl. There is nothing on this on cco.
View 3 Replies View RelatedWe have branches all over the country and we take different links like fiber (Ethernet) radio links etc. Now sometimes when we ping from branch WAN ip to its gateway or to the aggregation router (ASR 1000) in this case, we see some drops, but see no problem in actual HTTP or lotus communication.
What i want to know, that now a days, should we rely on ping results to determine link quality ? or should i use tools like iperf to basically see if the link is actually treating tcp and udp packets properly, I have heard this countless times that normally network devices like Cisco routers, even without any QOS, will give low priority to ping packets.
Is there a way to configure a VACL capture on 3560-x, we need more than 2 SPAN sessions. Feature navigator indicates that this feature is supported but it seems like it's not implemented in the IOS yet.
View 1 Replies View RelatedI know that an ELAM can be setup on a 6500 running ipservices 12.2(33)SXJ, however I noticed that following commands are not available on a 6500 router running advipservices 12.2(33)SXJ:show platform capture elam asic etc
So I wanted to know if there is an alternate way to setup an ELAM for troubleshooting purposes?
We are running in our DC one of the CISCO 2911 terminal server which is connected with HP ARC sight logger.
it is possible to capture user who execute ‘Telnet” or “show line” in the log, I mean all the command entries by user.
How to enable any config on 2911.
Basically I am trying to use Wireshark to do a packet capture on a Nexus 5010. I want to do a monitor session on on the switch so I can capture from a source port to a destination port on the same switch. I can configure the source port but when I go to configure the destination port I get "ERROR: Eth102/1/4: Configuration not allowed on fex interface". I have tried to reconfigure this port as a switchport but "switchport mode access" command does not take. I don't want to make any changes to any other ports but this one.
View 1 Replies View RelatedWhen I create a service object or group and add the object to a new rule it never works.I mean the traffic match not the rule. I see not hits.I placed the rule on top of my access list to check if I do somethink wrong but it is not working. When I place only a service for example tcp/23 it is working.
my ip service object
object-group service g-as400 description access client 2 as400 machine service-object tcp-udp destination eq 397 service-object tcp destination eq 137 service-object tcp destination eq 2001 service-object tcp destination eq 3000 service-object tcp destination eq 445 service-object tcp destination range 446 447 service-object tcp destination eq 449 service-object tcp destination eq 5010 service-object tcp destination eq 5544 service-object tcp destination eq 5555 service-object tcp destination range 8470 8476 service-object tcp destination eq 8480 service-object tcp destination eq
[code]...
why the WAN protocols like Frame-relay, HDLC and PPP are called Layer2 protocols?What is the address scheme they use?
View 5 Replies View RelatedWe have a situation where services are stopped on the real servers. The probes fail and we confirm the services are not running on the server. We cannot access the ports from the ACE directly. We can still however acces the VIP on the TCP port (L4 VIP class-map). So we can still telnet to the VIP on the port from thr Client side of the network.This is on ACE 20 Modules deployed in Routed mode. The version of software is A2(3.3).
Tried removing multi-match and loadbalance policies as well as class-map and re-applying then re-appyling the service policy to interface. Same behavior,This is a problem at another level as some services are being monitored by GSS via TCP keep-Alive and this obviuosly causes a problem as the service then never goes off-line.
I have got a PC at work (Windows XP Pro SP3) that is on two networks with the IPs 10.20.30.167, subnet 255.255.255.0 (internet enabled) and 10.0.0.20, subnet 255.255.255.0 (no internet). On the 10.0.0.X network there is a gateway with the IP 10.0.0.200 allowing access to another network; 192.168.60.X, subnet 255.255.255.0 (no internet). I have added the route on my work PC to access the 192.168.60.X network via this gateway and I can access all PCs on all three networks from this PC.Now, I am using LogMeIn Hamachi so that I can access the networks at work from home. The PC at work is the 'gateway' PC on the Hamachi network. When installing Hamachi it created a new network connection and bridged this connection with my 10.20.30.167 network adapter to allow access to the 10.20.30.X network from an external PC when connected using the Hamachi VPN connection. I have manually configured my Hamachi connection on my PC at home to the IP 10.20.30.169, subnet 255.255.255.0, with the default gateway set to 10.20.30.167. I can ping all computers on the 10.20.30.X network from my PC at home.
I then added a route on my PC at home for 10.0.0.X to go via 10.20.30.167 (the 'gateway' on the Hamachi network). I also enabled IP forwarding on the 'gateway' PC (my PC at work). I can not ping any PC on the 10.0.0.X network from my PC at home apart from 10.0.0.20 (the other NIC in the Hamachi gateway PC) and 10.0.0.30 (another PC on the 10.20.30.X network that is also on the 10.0.0.X network).Now, with IP forwarding enabled on the Hamachi gateway PC I would assume after adding the route on my PC at home for 10.0.0.X traffic to go via 10.20.30.167 that I would be able to ping all PCs on the 10.0.0.X network...I also tried adding a route on my home PC to send all traffic for the 192.168.60.X network via 10.20.30.167 which has a route via 10.0.0.200 to the 192.168.60.X network, but this also did not work.I then tried adding the 10.0.0.20 network adapter into the network bridge that the Hamachi connection made, also keeping both IPs (10.20.30.167 and 10.0.0.20) on this network bridge by adding them into the 'IP Settings' in the 'Advanced TCI/IP Settings'. I also added the 10.0.0.200 gateway for good measure. I still cannot ping any PC on the 10.0.0.X or 192.168.60.X networks from my PC at home.
I have also added the route to the 10.20.30.X network on a PC on the 10.0.0.X network to go via 10.0.0.20 and tried pinging a PC on the 10.20.30.X network but this also has not worked. Also setting the default gateway on a PC on the 10.0.0.X network to 10.0.0.20 does not allow this...Surely bridging the networks 10.20.30.167 and 10.0.0.20 on my work PC would allow another PC on the 10.0.0.X network to access the 10.20.30.X network after adding the route or setting 10.0.0.20 as the default gateway?
I have a fresh installation of LMS 4.0 on windows server 2003, when i click to open topology i get error message : ANIServer service may be down or Host name isn't DNS resolvable
i tried pdshow -brief ANIServer ===> service UP
DNS is working using host file in driversetc i restarted the server
restared the crmdmgtd
unistall / install java plugin
pdterm ANIServer
pdexec ANIServer
NO change ..
We are having issues transferring a 200GB VHD file across our point to point without being corrupted in the process. Any good application for testing the line quality across the point to point?Preferably we want something free, but if there is an in depth tool that costs money, we are open to that option as well.
View 1 Replies View RelatedAny good suggestions for a quality wifi adapter ? Everything I've used so far has been terrible.
View 1 Replies View Relatedthere is a line set with a provider with EoMPLS.This is an international line coming with 10M connectivity.the line is working fine with udp traffic but with tcp we don t get any use more than 1M.
View 7 Replies View Related