Is there any monitoring tools which can let us see the following on our broadband:

  1. Source & destination IP
  2. Software which make the traffic
  3. User which make the traffic
  4. Traffic volume, packets and bandwidth of that period

Our purpose:

To analysis how our bandiwdth was being used and occupied. Which user & software is jammed uo the broadband.

Thx alot.

Ivan

@SolarWinds

10 Spice ups

look here
Bandwidth Monitoring Free & Paid Tools Software Details:
http://community.spiceworks.com/how_to/show/2532
a great How-To from Muhammad Bilal
you can use the Spiceworks bandwidth monitor plugin for some detail
http://community.spiceworks.com/plugin/471
http://community.spiceworks.com/topic/222989-top-5-mostly-free-tools-for-monitoring-bandwidth
i use capsa (free version) for monitoring network traffic

1 Spice up

I prefer Wireshark or Colasoft Capsa Free :slight_smile: Both great products

5 Spice ups

Solar Winds has some good stuff:

1 Spice up

Solarwinds does all this but its pricey. I also have some builtin tools in my SOPHOS network security appliances that does all this. If I just want a snapshot of an interface to see if there are overall saturation issues, I use Cacti. In fact, you can use Cacti on network switches and monitor the individual switch ports. If you have hard-wired clients, this would be a way to monitor their bandwidth. It won’t break the traffic down by services but its free and certainly useful.

+1 for Solarwinds.

2 Spice ups

Solarwinds IP Address Manager (IPAM)

We need which user, software, device which use the bandiwdth.

Can these tools get these information?

We want to know exactly the execute file name, for example, Lync.exe, iexplorer.exe, rather than just port no.

I have login to Solarwinds demo site but it cannot provide such information.

Try a combo of ntop and cacti.

The technology options you have to see traffic information with details are NetFlow or packet capture.

NetFlow can be enabled on your routing and switching devices (even some firewalls) and the NetFlow packets are then exported to a flow analyzer tool (like a couple of folks here said, SolarWinds has a tool for NetFlow monitoring). Once the NetFlow packets reach the flow tool, the NetFlow packets are analyzed and you get your reports on IP conversation details such as source and destination IP addresses, source and destination port number, protocol, ToS, volume, speed, etc. In short, details of your bandwidth and traffic usage. The requirements here are that your devices should support NetFlow or sFlow or IPFIX export and you should have a flow analyzer like SolarWinds or Plixer, etc. By the way, SolarWinds also has free options - Real Time NetFlow Analyzer and Real-Time Bandwidth Monitor.

With NetFlow, you identify an app name using the port - protocol mapping (HTTP = 80/TCP, SMTP = 25/TCP) but NetFlow technology itself cannot distinguish between Lync or Skype if they both use HTTP. You can overcome this with packet analysis.

Packet analysis involves capturing actual packets from different points in the network, either by port mirroring or by using an appliance and then analyzing the packets to find details of network conversations. Packet analysis is much more in-depth and detailed than NetFlow but can be resource intensive, time consuming or expensive, depending on what you use. With packet capture you get details such as the appname, port and whatever details are available in the packet. Examples of packet analyzers are Capsa, Wireshark, etc.

If so, can Solarwinds help in :

  1. the bandwidth of WAN usage at a certain period and even at a certain point.
  2. At that period or at that point, we would like to know which :
    a) IP,
    b) User,
    c) Application,
    d) Software which is using up the bandwidth.

Ivan

I am connected directly to my network switch, but I hardly see any traffic in Colasoft, is it able to detect the neighbor switches and detect traffic on their ports?

hi you should look at Cisco IOS Netflow this would would help you manage your network traffic,manage your IP addresses and monitor your bandwidth here’s a link for more information (Cisco IOS NetFlow - Cisco) PM me or reply for more information on this or any other cisco products. :slight_smile:

Thx for the information.

Just wondering, if there is any monitoring tools, which can capture the SNMP data from the router or firewall, then I can have the bandwidth usage. Also, the software can get the application which the client PC is running with the bandwidth usage, then I can corelated the two data and see what’s happening in the bandwidth usage…

Is that possible?

You can try the dude: MikroTik Routers and Wireless - Software