Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] Cisco FWSM Capture Dump

Date: Mon, 10 Aug 2009 13:31:27 -0400
Yes I run multiple contexts.

I would just enable http (really https) access from your machine for a
short time when you grab the capture.

Obviously this would save you quite a bit of time.

Nick


-----Original Message-----
From: wireshark-users-bounces@xxxxxxxxxxxxx
[mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Robert D.
Scott
Sent: Monday, August 10, 2009 1:04 PM
To: 'Community support list for Wireshark'
Subject: Re: [Wireshark-users] Cisco FWSM Capture Dump

Are you running multiple contexts?  We do not normally allow http to a
user
context on the fwsm>

Robert D. Scott                 Robert@xxxxxxx
Senior Network Engineer         352-273-0113 Phone
CNS - Network Services          352-392-2061 CNS Phone Tree
University of Florida           352-392-9440 FAX
Florida Lambda Rail             352-294-3571 FLR NOC
Gainesville, FL  32611          321-663-0421 Cell


-----Original Message-----
From: wireshark-users-bounces@xxxxxxxxxxxxx
[mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of
NMaio@xxxxxxxxxxxx
Sent: Monday, August 10, 2009 12:56 PM
To: wireshark-users@xxxxxxxxxxxxx
Subject: Re: [Wireshark-users] Cisco FWSM Capture Dump

Robert,
Maybe I am misunderstanding you but I have done many captures on our
FWSMs.  After you let the capture run for a bit and grab the packets you
need you can just open a web browser to the interface on the context you
are capturing from.  For example.

https://10.x.x.x/capture/CONTEXT_NAME/CAPTURE_NAME/pcap

You can download the pcap file of the capture from here.

Give that a try.

Let me know if that works for you.
Nick



________________________________________________________________________
___
Sent via:    Wireshark-users mailing list
<wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
 
mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe