For troubleshooting purposes one may need to gather a packet (sniffer) capture from an IP Phone. There are many ways this can be accomplished. This article describes how to collect the capture using the IP Phone's built in PC ports. It can be enabled to copy all traffic entering into the SWITCH port, and send it to the PC port. From there, the data can be captured using a packet capture utility.
These instructions are relevant for Cisco IP Phone Models, 7941, 7942, 7961, 7962, 7965, 7970, 7975, 99xx, 89xx, and 699xx.
For models 7940 and 7960, skip Step 2 since "Span to PC Port setting" is not required.
1. Connect the Cisco IP Phone
There should be a PC connected to the back of the IP phone in the PC port, and the phone connected to the Switch.
2. Enable the Span to PC port feature.
From the IP phone configuration page, scroll down to the Protocol Specific Configuration section, and enable the "Span to PC Port" configuration option. This will trigger a change to the phone's TFTP configuration file. Save and reset the phone so it can retrieve the new configuration file.
7940 and 7960 Cisco IP Phones do not support the span to PC port feature, all data is automatically sent to the PC port.
3. Capture the packets with wireshark.
3a. Starting the capture
Open Wireshark and click on the first NIC to the left.
This will open the capture interfaces dialog, were you can select the NIC connected to the back of the IP phone we will capture. Click on start to initiate the capture
3b. Reproduce the issue to be captured
Traffic should start to scroll down on the window. Depending on the current PC activity it could be a lot of traffic. To filter down use the eth.addr filter with the MAC Address of the IP phone. The resulting traffic should show only traffic comming to and from the IP phone.
Hello All, My organization would like to integrate a future system using Rest API and also most importantly integration our ticketing system (IVANTI "HEAT") so that the agents would not have to have multiple windows opened at all times because they a...
I have this idea for video conference security. In my idea there is encryption on an end to end connection with ssh that has video encryption and sound encryption for ultimate security with alternating variables in the sound and video .I invented a n...
Hello,I need Support ASAPI have problem that users with correct service profile and IM & P option check configured not show in presence topology in IM and PresenceI try many things and restart and on troubleshooter I see unassigned users so I assign p...
Hi,We have a 3945 with Version 15.5(3)M5 with CUCM 10.5 We have a new ITSP provider that require authentication. We have configured the authetication in dial-peer level:dial-peer voice 20 voip
description ** Outbound SIP-ISP **
Hello,we change our ISP from ISDN to SIP. With the new ISP we use SRTP. With our phones it is no problem to call via this connection. The phones have certificats and all is fine. But with our VG310 i have a question. I know i can connect the VG310 via TLS...