I use port mirroring to capture traffic from my switch, this feature works great. The Top Connections report every 15 minutes has helped diagnose a few problems already. However, I need to take this to the next level, I need to take the data that is already there (say for the prior days 24 hour period) and filter out just specific source or destination IP addresses. Since the data is there I would imagine this should be simple.
Add comment