Packet analysis with Packet Analyzer

To use Packet Analyzer to analyze packet-level data for a host, host pair, port, protocol, or flow reported on the NetProfiler,

  1. Right-click the item to display the shortcut menu.

  2. Select Packets for this <selection> to display the submenu.

  3. Select Analyze in Packet Analyzer. This opens a window that displays a list of NetShark appliances that are sending data to the NetProfiler. The window also lists the capture jobs that are running on the selected NetShark.

  4. Select the NetShark appliance that you want to use as the source of the packet details you want to analyze.

  5. Click the link for the capture job that you want Packet Analyzer to analyze.

  6. The NetProfiler generates a Packet Analyzer script file based on the NetProfiler report criteria and the NetShark capture job parameters. Click the link to launch Packet Analyzer with the script file.

  7. If required, Packet Analyzer displays a popup for you to enter the login credentials for the NetShark that you have selected.

  8. Enter the login credentials and click OK. This opens main window of Packet Analyzer. The capture job you specified is listed in both the Devices and Files panels. In the Files panel you can use the trace clip created for the selection in the NetProfiler report. You can then apply views to the trace clip as necessary to analyze traffic at the packet level.

To analyze traffic flows is a flow list, you can left-click the flow ID and start with Step 4.  more

Refer to the Packet Analyzer documentation for descriptions of the features available for analyzing the traffic.

Prerequisites for using Packet Analyzer

Packet analysis of flow list entries

Exporting a NetShark trace file

Packet-level reporting