One of the effective methods for troubleshooting network is to capture packets flowing through a network and to analyze them.
Wireshark (previously called Ethereal) is widely used as a packet capturing tool.
Here we will introduce an application example of Unified Communication (UC) related troubleshooting of Wireshark. (We omit the description of basic operation of Wireshark as many websites out there explain it)
A Voice Playback Method from RTP Packets
A problem related to the voice quality may occur in the UC network.Various cases of voice quality problem include dead air, one-way audio, sound interruption, large (small) volume, noise occurrence, and distortion of sound. The forensics method and the troubleshooting differ depending on the case.
When an inquiry regarding the voice quality is received, first of all, conduct a detailed interview with the users to grasp what kind of problem is occurring. But the information collected from the interview can be ambiguous as it relies on user's subjective viewpoint and memory. There is a method to analyze RTP packets that is more accurate and objective forensics method.
Now an analysis method of RTP packets using Wireshark will be explained. Note that we assume that the packet capture, which monitored a switch port connected to IP Phone and Voice GW as object of forensics, is already obtained.
1. Open the collected packet capture data in Wireshark.
2. Apply a filter with the terminal information (such as IP Address) of the forensics object to narrow the data to be analyzed.
If a signaling packet (for example, H.323 or SIP) is included in the captured data, Wireshark automatically recognizes and handles UDP packets as RTP packets. In the above example, UDP is not decoded as RTP since the signaling packet is not included.
3. Decode UDP packets as RTP packets
Select a UDP packet of the stream to analyze, and select "Decode As..." by right click.
Select RTP from the "Decode As" window.
This operation changes the display of Protocol from UDP to RTP.
Select "RTP > Show All Streams" from the Telephony menu.
Select the RTP stream of forensics object. Pressing the "Find Reverse" button selects the RTP stream of reverse direction that corresponds.
Press the Analyze button to investigate the statistical information (such as Max delta, Max jitter and Lost RTP Packets) of the RTP packets of the Forward and Reverse direction.
Press the "Save payload..." button to save the voice (payload) of each of the Forward Direction and Reverse Direction individually.
In the above example, the payload is saved in the .au format.
Open the saved voice file in the WAV file editor (such as Audacity) to analyze the voice data.
The WAV file editor function enables the analysis of volume and frequency characteristics.
I am pretty new to all things Cisco so apologies for any dumb questions or inability to grasp basic concepts. Trying to set up a cisco router, C897VA-K9, and need to assign outbound ip addresses and direct inbound traffic. outbound ip addresses: for ...
I'm connecting an interface off of a firewall onto port 41 of a 2960x running 15.0(2)EX5 with a very generic configuration: interface GigabitEthernet0/41switchport access vlan 200switchport mode access When I issue a "show mac address-t int...
Port 47 on a brand new C9400-LC-48U module is not supplying POE, it does support a network connection. "sh power inline g5/0/47" does not show any issues. It is the same as other ports on the card. We have not tried every port on the module, but the devic...