Skip Links

Network World

Jerold Swan

When In Doubt, Capture Packets

The New Embedded Packet Capture Feature
Submitted by Jerold Swan on Mon, 05/24/10 - 10:51pm.

While NetFlow--the subject of my last three posts--is a tool that I use constantly for getting visibility into network traffic, sometimes you need to look at complete packet contents. I have a saying at work: "When in doubt, capture packets." The first few times (or maybe few dozen times) you troubleshoot a problem by using raw packet captures, it'll be confusing and time consuming.

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?

NetFlow Part 3

NetFlow version 9 CLI Options
Submitted by Jerold Swan on Thu, 05/20/10 - 1:19pm.

In the previous post, we looked at the NetFlow top-talkers feature, which is probably the quickest way to get traffic-level details about what's happening on a router in real time. There have been a couple of comments from people wanting to know more about NetFlow versions, and other NetFlow commands. I want to stay focused on stuff that the average mid-level engineer can do without purchasing additional tools, so to close out our NetFlow series of posts we'll take a look at some of the CLI features related to NetFlow version 9.

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?

NetFlow Top Talkers

Who's Doing What? A Quick Way to Check
Submitted by Jerold Swan on Tue, 05/18/10 - 10:53pm.

In the last post, we discussed some of the basic ideas behind NetFlow, which is sort of like the Swiss Army Knife of network visibility tools. In this post, keeping with the spirit of "quick-and-easy" ways to improve your productivity, we'll look at some of the CLI tools for use with NetFlow.

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?

NetFlow Part 1

Network Visibility Continued
Submitted by Jerold Swan on Fri, 05/14/10 - 1:07pm.

NetFlow is one of those tools that's been around forever, but until the last few years it hasn't received a lot of attention outside of service provider and large enterprise networks. Recently, there have been a lot of NetFlow tools released by various vendors that are aimed at the mid-sized business market. What I'd like to do here is briefly introduce NetFlow for those who might not be familiar with it, then talk about how to use it from the IOS command line without needing to install any additional server-based tools.

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?

Finding IP Addresses

Network Visibility First Steps
Submitted by Jerold Swan on Wed, 05/12/10 - 11:55pm.

One of my favorite writers in the IT world in general, and in the security world in particular, is Richard Bejtlich of Taosecurity and General Electric. One of the main points that Richard makes again and again in his books and blog posts is that visibility is (or should be) one of the key factors in any type of security design, regardless of whether you're designing network, host, or application components.

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?

More Useful Output Modifiers

Quick and Easy Tricks to Streamline Your IOS CLI Skills
Submitted by Jerold Swan on Tue, 05/04/10 - 10:51pm.

In my introductory post, we looked at some of the more obscure output modifiers, such as the "redirect" and "append" filters. In this post, we'll look at some of the more common ones. Most people who have been around IOS for a while know about the "begin", "include", and "exclude" modifiers. The utility of these tools is limited primarily by one's creativity, but at the risk of blogging the obvious, I want to show some of my favorites.

Show Only Interfaces with Assigned Addresses

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?

Introductions and IOS Output Filters

Be More Efficient with the Redirect Command
Submitted by Jerold Swan on Fri, 04/30/10 - 10:56am.

First off, let me introduce myself and the blog. I'll be guest blogging for the month of May. I'm a network engineer for a mid-sized company in Colorado. I've been in IT for about 15 years, with about 10 years devoted to network infrastructure, focusing mostly on Cisco products. During this time I spent four years as a Cisco instructor for Global Knowledge, teaching all the CCNA and CCNP courses. Before stating in the infrastructure world, I did system administration, mostly in the UNIX/Linux realm. I got my CCIE in Routing & Switching in 2007.

Read more

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?
About Network Visibility Tips and Tricks

Jerold Swan (CCIE #17783, CCSP) is a network engineer with a mid-sized company in Colorado. Previously, he has worked as a Cisco instructor for Global Knowledge, and as a network engineer or systems administrator in the service provider and higher education fields. His main areas of professional interest are routing protocols, security, and network monitoring. He holds bachelor's and master's degrees in English from Stanford University. Outside the IT world, he volunteers for a local search & rescue team and enjoys a wide variety of outdoor sports, especially trail running and mountain biking.

Jay's latest title, CCNP ROUTE 642-902 Cert Kit: Video, Flash Card, and Quick Reference Preparation Package, was selected as the May, 2010, book giveaway on Cisco Subnet.

Enter this month's giveaways.

Read a free chapter excerpt of the book

Buy the book now.

 

Most Discussed Posts

On The Web
Twitter