Solved

How to turn off promiscuous mode on a NIC?

Posted on 2004-04-27
7
2,283 Views
Last Modified: 2012-06-21
My boss is getting tons of traffic going through his NIC, and would like it to stop. I have determined that his card is most likely running in promiscuous mode and is accepting all the packets thaqt come through the network. How do I turn this off? I can't find the option anywhere.

He is using Windows 2000

Thanks.
0
Comment
Question by:StickyDragon
7 Comments
 
LVL 7

Expert Comment

by:magus123
ID: 10929868
0
 
LVL 11

Expert Comment

by:PennGwyn
ID: 10931991
What tool is claiming that there are lots of packets coming through?

What does the network infrastructure look like (hubs, switches, etc)?
0
 

Author Comment

by:StickyDragon
ID: 10932127
This is when you right-click the LAN connection and choose "Status" from the drop-down.
0
VMware Disaster Recovery and Data Protection

In this expert guide, you’ll learn about the components of a Modern Data Center. You will use cases for the value-added capabilities of Veeam®, including combining backup and replication for VMware disaster recovery and using replication for data center migration.

 
LVL 2

Expert Comment

by:dramatix01
ID: 10934047
From the little bit of information that you have given it is very difficult to truly determine what the problem is.  It sounds like you are trying to treat the symptom and not the problem.

If you could answer some of the following questions we may be better able to help you:

1. How big is your network?
2. As PennGwyn asked, what type of network hardware are you using? (switches, hubs, etc.)
3. How old is the hardware attached to your network?

You can see where I'm going with this.  Any other information that you could offer would make this problem much easier to solve.

You may also want to stick a sniffer on your network to see if you have a chattering NIC or an employee that loves to watch or listen to streaming media while working.

Regards,
Dave...
0
 
LVL 1

Accepted Solution

by:
axelt earned 30 total points
ID: 10936534
NIC's don't just turn on promiscous mode by themselves - check for viruses.

If you want to know where the traffic is coming from, download ethereal from http://www.ethereal.com/distribution/win32/
Install winpcap3.0 from the same location before installing ethereal.

When capturing - turn promiscous mode off. Stop all applications.
If you use hubs - buy switches






0
 

Author Comment

by:StickyDragon
ID: 10941338
Definitely no viruses, we have Norton corporate, up to date definitions. Tried Ethereal. Neat program, seems that my boss is getting mostly TCP packets (whereas as I get TCP/UCP/ARP pretty evenly (And IPX for some reason, even though it isn't used). He seems to have a lot of TCP traffic coming from the Exchange server for one, and I don't for some reason. Why would this traffic be sent to one PC and not another?

1. We have about 150-200 computers
2. We have switches and hubs (all 3com rack-mount ones), but we are all connected into the same hub.... I did however move him to a switch and he had the same problem still.
0
 

Author Comment

by:StickyDragon
ID: 10942402
Turns out it was nothing more than a driver issue with 3Com 3C920 cards! Update your drivers if you ever run into this problem.
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

Lets look at the default installation and configuration of FreeProxy 4.10 REQUIREMENTS 1. FreeProxy 4.10 Application - Can be downloaded here (http://www.handcraftedsoftware.org/index.php?page=download) 2. Ensure that you disable the windows fi…
Let’s list some of the technologies that enable smooth teleworking. 
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

758 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now