For debugging reasons i need to see what network traffic especially TCP is transmitted or not.
I thought about using an Endian firewall for this, but it doesn't support 2 network interfaces with the same IP range.
I am looking for a Linux solution which I can plug between the two switches in order to monitor all traffic passing by.
What I found out so far is that I am probably searching for a "transparent firewall" solution.
Best Answer
The best option for me would be to put a network tap between the switches. You can however put a Linux box with 2 interfaces and set it up as a bridge.
Then you can look at the traffic traversing the bridge using
tcpdump
as usual.