I know AMD stores the data obtained from port mirroring in many different formats (zdata, vdata, transdata etc.) Is there any pcap file? and if not, is there any way I can somehow utlize/convert this file to obtain pcap packet trace?
I was troubleshooting an issue in client site, and analyzing the packet trace would be helpful. Sadly though, the issue can't be reproduced and by the time I am looking into it the issue is already gone (and for this software service I don't have AppMon with it). Hence, the only way I can have a look at the packet trace when there the issue happen is to dig into the historical data, which is the 8-days buffer of AMD.
Is there any way/workaround to do this?
Solved! Go to Solution.
There is really no way to utilize the Xdata files to reconstruct network packets since they are created by picking out the important parts of the network traffic and dropping the rest.
But there is a couple of ways if you know what you want. One is called "Smart packet capture".
Thee are other ways too, but start with this one and see if it helps you.