Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] BPDU packets

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: Sake Blok <sake@xxxxxxxxxx>
Date: Tue, 8 Jul 2008 08:00:38 +0200

On Sat, Jul 05, 2008 at 11:14:07PM -0400, Hansang Bae wrote:
> Renato Rodrigues wrote:
> > 
> > I need to sniff BPDU packets passing through my network,
> >  although I am not an experienced user and need help on how I would go 
> > about.
> > Thanks in advance to all the folks on the user list
> 
> You actually have a bigger problem.  (nit picking: technically, they are 
> bdpu frames and not packets).
> 
> The problem with BPDU's is that they don't just go on and on and on. 
> You have to capture it at each and every subnet.

Nit picking: BPDU frames are local to each (interswitch)link. So you 
have to capture them on each link between your switches (and not on 
each subnet as that implies that they are the same within the whole
vlan, which can be spread accross several switches).

Cheers,
    Sake

  • References:
    • Re: [Wireshark-users] BPDU packets
      • From: Hansang Bae
  • Prev by Date: [Wireshark-users] Question about tshark protocol hierarchy statistics (phs)
  • Next by Date: [Wireshark-users] Does Wireshark modify the Ethernet Interface in ANY way while capturing?
  • Previous by thread: Re: [Wireshark-users] BPDU packets
  • Next by thread: [Wireshark-users] PPI header capture through rpcap not working
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation