Linux - NetworkingThis forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.
Notices
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
System monitor shows upto 50% network activity on 100 Mbps connection. Ethereal shows that 80 - 90% packates are ARP packets and 10% UPD, even when there is no network connection on my standalone machine on lan (Not using NIS, NFS or other network services). What could be reason for this?
If you have several switches ou hubs, then you may experience looping issues : if spanning tree isn't enabled or is misconfigured and if you've some loops in your LAN, then arp broadcast are for ever forwarded from a switch to another, and another till saturation of bandwidth.
I do not have complete topology of our campus lan available, but is it possible to make sure existance of loops using some network tools? All I know is our network switch is connected to fibre optic backend of the campus. However, I have not encountered this problem using machines on other subnets of campus network.
Yes, most of the packets are such. I also thought of virus but source and destination packets are not from same machines. As source and destination both are varying, I ruled out that possibility, However, it might be a smart virus or a group of infected machines. Other thing is that all discovery requests are not for valid IP, It appears like random probing. The problem is our subnet is very large (Thousands of machines) divided in sub-sub-nets of hundreds of machines.
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.