Protocol Analyzer
Working with Captured Packets
396 5967–9446
To display Traffic Trend (packet match counts)
1 Create and start live instances for the filter/settings you
want.
2 Choose View➤Traffic Trend…
Traffic Trend displays a line graph showing how many packets per
second match each available instance’s filter. You can set up packet cap-
ture instances to filter on the types of traffic you want to see—hosts,
protocols, packet status, and/or pattern match. Traffic Trend then shows
the rate at which packets matching these filters are seen by the data
source.
Traffic Trend is relevant only for live instances; it cannot be used for
post-filtered data or trace files.
When you choose View➤Traffic Trend…, a graph window like the one in
figure 83 on page 398 appears, except that the graph is initially empty.
The match count for each packet capture instance is graphed as a sepa-
rate line.
By default, new data points are added every 10 seconds. To change this
value, choose View➤Time Intervals… from the graph window and set
the SNMP Polling On value to the time period you want.
The graph tool used for the Traffic Trend graph is the same as the one
used for many of the NetMetrix Enterprise Utilities. For information on
manipulating the graph, refer to page 528.
If you create instances only for use with the Traffic Trend graph—that is,
you aren’t concerned with the packet contents—you can minimize the
agent resources needed by setting the buffer size to 0, as discussed on
page 356.
Comments to this Manuals