in More Search Options

How to determine what applications are causing the traffic from the host

Last post 10-20-2007 7:49 AM by paullaf. 0 replies.
Page 1 of 1 (1 items)
Sort Posts:
  • 10-20-2007 7:49 AM

    • paullaf
    • Not Ranked
    • Joined on 10-20-2007
    • Posts 5
    • Points 11

    How to determine what applications are causing the traffic from the host

    In my post about Top conversations and how they are calculated (http://thwack.com/forums/t/5618.aspx) we can see a lot of Microsoft DS (445) port traffic as the source port. My question is, what do you all use as tools to determine what applications on the source server is causing this traffic. My thought is to use a packet sniffer like Etherreal running on the source machine or set up a port mirror in the switch. It seems like this is a time consuming and tedious method but I can't think of another way. Is this the best approach? What have you done in the past and with what tools?

    Thanks,

    Paul

    Filed under:
    • Post Points: 1
Page 1 of 1 (1 items)