What is that? Is it freeware? Network General has been trying to sell me the infinistream but it is VERY pricy.
http://www.networkgeneral.com/Products_details.aspx?PrdId=20046117180712 &CatId=1 -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Chris Moore Sent: Friday, June 16, 2006 9:26 AM To: [email protected] Subject: RE: [Ntop] Vlan Report On second thought, that sounds like a job for asmpled NetFlow! -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Chris Moore Sent: Friday, June 16, 2006 10:22 AM To: [email protected] Subject: RE: [Ntop] Vlan Report Ah, well that's easy. All you need is a 10-gig NIC and a box that will support it! Oh, and a 10-gig card for that Cat. Linux and Ntop aren't so free anymore, are they? ;-) -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Tim Weid Sent: Friday, June 16, 2006 10:12 AM To: [email protected] Subject: RE: [Ntop] Vlan Report Yea that makes sense. My problem is we run the big Cat 6000 series Cisco switches and are currently configured for 2gb uplinks. We will move these up to 8gb in a couple of weeks. Even if the uplinks go to 50% capacity it overruns the speed of my monitoring link. Like trying to drink from a firehose. -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Chris Moore Sent: Friday, June 16, 2006 9:04 AM To: [email protected] Subject: RE: [Ntop] Vlan Report Well, yes and no. You definitely need to make sure you have the right hardware and know your network to do it. Watch two things - one, if you have a lot of ports mirrored to a single monitoring port make sure you're not exceeding the capacity of that mirrored link. Once you're straight here, watch your dropped packets under Summary > Traffic. A couple percent is no big deal, but if you're getting into double-digits then you need to do some optimizations and/or hardware upgrades. Your NIC is important to. IIRC the dropped packets stat will not reflect packets dropped by the NIC. That old NIC in the back of the drawer is fine for monitoring a T1 router, but if you're getting into a busy gig link you need to find a good one. I did some research awhile back (forget where) and concluded that I needed to be using 64-bit PCI NICs from SysKonnect. I have no affiliation with them, but they do seem to be very good. Obviously this requires a MB with 64-bit PCI. Monitoring a busy gig link is definitely not a job for an old clone! _________________________________________ Chris Moore Senior Network Engineer Guardian Mortgage Documents 303-942-2019 emergency (GMD Help Desk): 303-942-2002 [EMAIL PROTECTED] -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Tim Weid Sent: Friday, June 16, 2006 9:32 AM To: [email protected] Subject: RE: [Ntop] Vlan Report I do something similar but I question how accurate the information is. The only way to see all 6 vlans is to span a trunk port. Ususally your fiber uplinks from your core switch out to your secondary switches are trunks. To span a trunk port routes a ton of traffic to your NTOP machine and even if you have a gig ehternet port I don't see how it is truly seeing all of the data. I have the same issue with trying to accurately track utilization of vlans. Simply no way to have a machine capture all of the data. I use it mostly for trending and to see who the big movers are but don't count on it to see everything. My .02 ********************************************************************** Confidential/Proprietary Note The information in this email is confidential and may be legally privileged. Access to this email by anyone other than the intended addressee is unauthorized. If you are not the intended recipient of this message, any review, disclosure, copying, distribution, retention, or any action taken or omitted to be taken in reliance on it is prohibited and may be unlawful. If you are not the intended recipient, please reply to or forward a copy of this message to the sender and delete the message, any attachments, and any copies thereof from your system. Thank you. Guardian Mtg Documents, Inc. 225 Union Boulevard, Suite 200 Lakewood, CO 80228. ********************************************************************** _______________________________________________ Ntop mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop _______________________________________________ Ntop mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop
