Has anyone ideas on how to baseline a network with wireshark?
Span the port a workstation is on and then start capturing? Get the boot up, dhcp, start applications?
How about the network itself? With switches you only get broadcast and traffic to your computer.
How long should the capture last?
Do you need a capture for each model of workstation, laptop and server?