This is our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Hi wireshark experts, I am a new wireshark user. I find intermittent link down from 3:00am ~ 3:02am sometimes. I use Windows perfmon and I found the network flooding. Could you tell me how to identify the root cause using wireshark?

As you can see bytes total/sec on four 10GbE(screenshot 1) below, it went from 10MB/s to 140MB/s on four links at 3:00am and caused no buffers errors.(screenshot 2)

I check the output.zip and I know the packets/sec is increased at 3:02am but there is no suspicious IP address, please help. Check out the file in the wireshark directory. ftp://ftp01.quantatw.com/ user: sapftp password: wju123

alt text alt text

Thanks for your help. Any ideas will be really appreciated.

asked 27 Sep '12, 20:25

Dennis's gravatar image

Dennis
1111
accept rate: 0%

Be the first one to answer this question!
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:

×6
×5
×1

question asked: 27 Sep '12, 20:25

question was seen: 4,402 times

last updated: 27 Sep '12, 20:25

p​o​w​e​r​e​d by O​S​Q​A