Configuring General Settings

This section describes how to configure Packet Monitor general settings, including the number of bytes to capture per packet and the buffer wrap option. You can specify the number of bytes using either decimal or hexadecimal, with a minimum value of 64. The buffer wrap option enables the packet capture to continue even when the buffer becomes full, by overwriting the buffer from the beginning.

To configure the general settings:
1
Navigate to the Dashboard > Packet Monitor page.
2
Click the Configure button. The Packet Monitor Configuration dialog displays.

3
Under General Settings, in the Number of Bytes To Capture (per packet) field, type the number of bytes to capture from each packet. The minimum value is 64, which is the default value. This value can be entered as a hexadecimal value.
4
To continue capturing packets after the buffer fills up, select the Wrap Capture Buffer Once Full check box. Selecting this option will cause the packet capture buffer to wrap once full, that is, to start writing captured packets at the beginning of the buffer again after the buffer fills.
NOTE: This option has no effect if FTP server logging is enabled on the Logging tab because the buffer is automatically wrapped when FTP is enabled.
5
Under Exclude Filter, select the Exclude encrypted GMS traffic to prevent capturing or mirroring of encrypted management or syslog traffic to or from SonicWall GMS. This setting only affects encrypted packets within a configured primary or secondary GMS tunnel. GMS management traffic is not excluded if it is sent via a separate tunnel.
6
Use the Exclude Management Traffic settings to prevent capturing or mirroring of management traffic to the appliance. Select one or more check boxes for each type of traffic to exclude:
7
Use the Exclude Syslog Traffic to settings to prevent capturing or mirroring of syslog traffic to the logging servers. Select the check box for either or both type of server to exclude:
8
Use the Exclude Internal Traffic for settings to prevent capturing or mirroring of internal traffic between the SonicWall appliance and its High Availability partner or a connected SonicPoint. Select the check box for each type of traffic to exclude:
9