Solved

monitoring DNS and DHCP traffic

Posted on 2012-03-16
4
486 Views
Last Modified: 2012-03-27
hi guys

how would i go about monitoring DHCP and DNS network traffic?
0
Comment
Question by:johnkesoglou
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 22

Expert Comment

by:Matt V
ID: 37730807
What are you hoping to see?  Most of the information you want is available in the event logs.
0
 

Author Comment

by:johnkesoglou
ID: 37730855
i am looking to find a program that would graph lows and peaks but isolate only DNS and DHCP traffic
0
 
LVL 11

Expert Comment

by:Khandakar Ashfaqur Rahman
ID: 37731462
If you use Windows Domain then you can use Netmon Protocol Analyzer into server:
http://www.microsoft.com/download/en/details.aspx?id=4865

There are other protocol analyzers like as Wireshark or Ethereal can do it too.
http://www.wireshark.org/download.html
http://www.ethereal.com/
0
 
LVL 57

Accepted Solution

by:
giltjr earned 500 total points
ID: 37731658
Do you want to do this for the whole network, or just to/from specific computers?

Assuming you have a fairly modern network you probably have switches.  If you have switches you either need to run the packet capture utility on the DNS and DHCP servers or setup a port that mirrors the port to the DNS and DHCP servers.  Otherwise you will not see the traffic.

I would suggest not using ethereal.  Although it is still available, it is no longer maintained.  Ethreal became Wireshark and that is maintained.
0

Featured Post

Transaction Monitoring Vs. Real User Monitoring

Synthetic Transaction Monitoring Vs. Real User Monitoring: When To Use Each Approach? In this article, we will discuss two major monitoring approaches: Synthetic Transaction and Real User Monitoring.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
I had an issue with InstallShield not being able to use Computer Browser service on Windows Server 2012. Here is the solution I found.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …

690 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question