Hi, how to simply find internal IP up/downloading data?

Scrutinizer is an enterprise/business class NetFlow and sFlow analysis tool. Scrutinizer provides historical trends of the company's critical network interfaces as well as the details on:

Who: The end system causing the traffic
What: The application/protocol that is being used
When: The time frame it has been occurring for
Where: The network connection that is affected

Moderators: scottr, Moderator Team

Hi, how to simply find internal IP up/downloading data?

Postby sitzler » Wed Dec 07, 2011 9:52 pm

Hi,

Thanks for looking at my question, Scrutinizer is monitoring all of my interfaces, however I don't see the internal IP (or host-name) of the computer doing the "top talking".

For example when I do an upload test I can see my internet interface is monitoring (detecting) this under "Dashboard > Pairs". My internal proxy's IP is the Source (outbound) and the destination IP is whomever is receiving the file but I cant work how to tell its my ip address internal that has initiated the sending of this file? Can I "drill down" somehow to see my Internal IP as the source of the upload.

Any help appreciated, thanks
sitzler
 
Posts: 1
Joined: Wed Dec 07, 2011 9:10 pm

Re: Hi, how to simply find internal IP up/downloading data?

Postby dalet0 » Thu Dec 08, 2011 8:28 am

Hi Sitzler,

1. I would identify the inbound or the outbound interface(s) for this traffic.
2. Open a conversation WKP report for that interface.
3. Apply a "IP Host" or a "Host to Host" filter. Here the host being the source or destination IP(s).

The following blog has more informations on how to use filters:
http://www.plixer.com/blog/network-traffic-analysis/advanced-netflow-analysis-requires-advanced-filters/

I hope this helps.
dalet0
 
Posts: 41
Joined: Mon May 17, 2010 10:52 am
Location: Biddeford, ME


Return to Scrutinizer

Who is online

Users browsing this forum: No registered users and 0 guests

cron

Who is online

In total there are 0 users online :: 0 registered, 0 hidden and 0 guests (based on users active over the past 5 minutes)
Most users ever online was 60 on Thu Jun 25, 2009 9:07 am

Users browsing this forum: No registered users and 0 guests