Wireshark-users: Re: [Wireshark-users] mix pcap files
From: vishal arya <visarya@xxxxxxxxx>
Date: Tue, 26 Feb 2008 19:26:48 +0530
doing this this requires admin access on network device.
in brief :
* lets say a switch a 10 ports and you can configure lets say port 7 to get copy of data passing through other ports by configuring port mirroring to port 7. * connect a second nic/ethernet card on a machine and connect to port 7 of switch. * now if you capture the packets on second nic on the machine you can capture all the packets going through the network.

you can find a lot of help just search for "how to setup Port mirroring" on google
here few pages that explain the basic  ,
http://en.wikipedia.org/wiki/Port_mirroring
http://www.effetech.com/help/cisco-span.htm
http://www.inmon.com/help/sp/5.0/configure/portmirroring.htm
http://www.colasoft.com/support/installation/


-vishal

Cristina Martínez Jimenez wrote:
Could you explain that in more detail?

> Date: Tue, 26 Feb 2008 18:42:17 +0530
> From: visarya@xxxxxxxxx
> To: wireshark-users@xxxxxxxxxxxxx
> Subject: Re: [Wireshark-users] mix pcap files
>
> you can configure span port on a network switch through which call is
> getting routed and capture using the span port.
> -vishal
>
> Cristina Martínez Jimenez wrote:
> > I want to analyse VoIP calls calling between mobile phones. I have an
> > application in the mobile phone which captures the packets received in
> > the call (pcap file). The problem is that for analizing the call I
> > need only 1 pcap file with all the packets in the call, but what I
> > have is 2 differents pcap files (one from each mobile phone). My
> > question is if it is possible to mix the 2 captures in only one file.
> > Then I would have all the traffic within the call in the same capture
> > and I will be able to analyse it as a complete VoIP call.
> >
> > Please, help me!!!
> >
> > Thanks
> >
> > ------------------------------------------------------------------------
> > Tecnología, moda, motor, viajes,.suscríbete a nuestros boletines para
> > estar siempre a la última MSN Newsletters
> > <http://newsletters.msn.com/hm/maintenanceeses.asp?L=ES&C=ES&P=WCMaintenance&Brand=WL&RU=http%3a%2f%2fmail.live.com>
> >
> > ------------------------------------------------------------------------
> >
> > _______________________________________________
> > Wireshark-users mailing list
> > Wireshark-users@xxxxxxxxxxxxx
> > http://www.wireshark.org/mailman/listinfo/wireshark-users
> >
>
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-users

------------------------------------------------------------------------
Sigue al minuto las principales noticias de tu ciudad MSN Deportes <http://deportes.es.msn.com/>
------------------------------------------------------------------------

_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users