If your network card is known to work in "promiscuous mode" the
problem is probably that the mirror port is not working propperly.

If CDP is enabled and you see CDP packets whose source interface is
declared to be the one you are connected, the mirroring is not working
properly, it is working as a normal port not as a SPAN one.



On 10/10/07, Chad Webb <[EMAIL PROTECTED]> wrote:
> I do have "promiscous mode" checked within the Options screen
>
> Luis EG Ontanon said the following on 10/10/2007 10:22 AM:
> > The symptoms are those of not capturing in promiscuous mode, I.e. you
> > see only broadcast packets and those directed to your machine (which
> > in this case do not exist).
> >
> > Set the "Capture n promiscuous mode" flag in the capture dialog.
> >
> > On 10/10/07, Giles Coochey <[EMAIL PROTECTED]> wrote:
> >>> Obviously the port monitoring is incorrect. Cisco does a great job of
> >>> being inconsistent across their product line (but don't tell that to
> >> the
> >>> layer 3 guys - most insist Cisco can do no wrong as an article of
> >> faith).
> >>
> >> Are you sure that the port monitoring is wrong for a 3560?
> >>
> >> Maybe I'm missing something.
> >>
> >> Giles
> >> _______________________________________________
> >> Wireshark-users mailing list
> >> Wireshark-users@wireshark.org
> >> http://www.wireshark.org/mailman/listinfo/wireshark-users
> >>
> >
> >
>
> --
> Chad S. Webb
> Systems Administrator
> General Dynamics Information Technology
> NOAA\NESDIS\NCDDC
> Bldg 1100 Rm 117
> Stennis Space Center, MS 39529
> Voice: 228.688.3808
> Email: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> www.gdit.com
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@wireshark.org
> http://www.wireshark.org/mailman/listinfo/wireshark-users
>


-- 
This information is top security. When you have read it, destroy yourself.
-- Marshall McLuhan
_______________________________________________
Wireshark-users mailing list
Wireshark-users@wireshark.org
http://www.wireshark.org/mailman/listinfo/wireshark-users

Reply via email to