Monitoring
Packet sniffing
278
Maintenance of the Avaya G350 Media Gateway
June 2004
Enabling packet sniffing
Since the packet sniffing service presents a potential security breach, the administrator must first enable
the service on the G350 before a user can start capturing packets. Use the
capture interface
command to
enable the packet sniffing service. By default, the packet sniffing service captures packets and Ethernet
frames on the VLAN, Serial, and FastEthernet interfaces. You can use the
capture interface
command to
enable packet sniffing on specific interfaces only.
Creating a capture list
By default, the packet sniffing service captures all packets passing through the G350’s interfaces. Use a
capture list to selectively filter the packets that are captured by the service.
A capture list contains rules and actions. A rule specifies criteria against which packets are tested. The
action tells the G350 what to do for packets matching the rule criteria. Only packets that match the
specified criteria and have an action of
capture
are captured to the capture file.
Use the
ip capture-list
command to enter the context of a capture list (and to create the capture list if it
does not exist). Once in the capture list context, use the
ip rule
command to define a set of criteria against
which to test packets. Use the following commands in the ip rule context to specify the packet criteria:
Specify the action to take for the rule using the
composite-operation
command in the ip-rule context.
Specify one of the following actions:
•
capture
•
no-capture
For example, the following command creates capture-list 501:
G350-001# ip capture-list 501
Table 150: CLI commands for specifying rule criteria
ip-rule command
Description
ip-protocol
Packets having the specified IP protocol
source-ip
Packets from the specified source IP address
destination-ip
Packets going to the specified destination IP address
tcp source-port
TCP packets from the specified source port
tcp destination-port
TCP packets going to the specified destination port
udp source-port
UDP packets from the specified source port
udp destination-port
UDP packets going to the specified destination port
icmp
ICMP packets of the specified type
Содержание Media Gateway G350
Страница 1: ...Maintenance of the Avaya G350 Media Gateway 555 245 105 Issue 3 June 2004 ...
Страница 16: ...About this book Sending us comments 16 Maintenance of the Avaya G350 Media Gateway June 2004 ...
Страница 48: ...G350 component maintenance IP telephones 48 Maintenance of the Avaya G350 Media Gateway June 2004 ...
Страница 284: ...Monitoring Extended keepalive 284 Maintenance of the Avaya G350 Media Gateway June 2004 ...
Страница 306: ...G350 traps G350 traps and resolutions 306 Maintenance of the Avaya G350 Media Gateway June 2004 ...
Страница 326: ...Media Server alarms S8300 alarms UPS 326 Maintenance of the Avaya G350 Media Gateway June 2004 ...