Hi There,
I wonder if someone could suggest best practice for sip trace capture to pcap file. I would like to open file in the Wireshark after.
I have looked at the traffic-export method and few others included in the below doc. However I am looking for the option to capture live traffic for a period of few hours to an external syslog server. This would allow me to take a large size of trace without worrying about the space on the router's flash.
Has anybody done such a configuration?
https://supportforums.cisco.com/sites/default/files/legacy/9/9/4/43499-july-26-cube-randy-wu-presentation-regular-size-modified-randy.pdf
Thanks in advance.