Avatar of Kirchtoe
Kirchtoe

asked on 

Terminal Server processing numerous packets from a single external connection

I have a 2012 R2 Terminal Server used for Remote Desktop connections.  We have been experiencing slow connections and cutoffs throughout a given day so I decided to investigate.

When I connect to the server and run, for example, Wireshark to see what is hitting the NIC, I see that in a 10-second capture there are maybe 800 packets coming from my public IP.

No other remote connection shows anywhere near this many packets.  This behavior doesn't seem normal.

I have attached a file showing the packet capture from Wireshark.  72.135.233.88 is my public IP.
Network-capture.docx
Network Analysis

Avatar of undefined
Last Comment
Dirk Kotte
Avatar of Elango Sathyadev
Elango Sathyadev
Flag of Australia image

From what i see it could be DNS.

Is your internet provider Spectrum Internet with organisation name "Time Warner Cable Internet LLC"

Change wireshark to all origin and destination port and post the capture again.

In Wireshark go to Edit -> Preferences -> Columns add the ports
ASKER CERTIFIED SOLUTION
Avatar of Dirk Kotte
Dirk Kotte
Flag of Germany image

Blurred text
THIS SOLUTION IS ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
Network Analysis
Network Analysis

Network analysis is the process of identifying and remediating the processes and systems within a network, including performance, connectivity and security. The process is performed through the use of tools developed for monitoring and analyzing network activity. Network problems that involve finding an optimal way of doing something are studied under the name combinatorial optimization. Examples include network flow, shortest path problem, transport problem, transshipment problem, location problem, matching problem, assignment problem, packing problem, routing problem, Critical Path Analysis and PERT (Program Evaluation & Review Technique).

10K
Questions
--
Followers
--
Top Experts
Get a personalized solution from industry experts
Ask the experts
Read over 600 more reviews

TRUSTED BY

IBM logoIntel logoMicrosoft logoUbisoft logoSAP logo
Qualcomm logoCitrix Systems logoWorkday logoErnst & Young logo
High performer badgeUsers love us badge
LinkedIn logoFacebook logoX logoInstagram logoTikTok logoYouTube logo