Hi all
Bit of a noob question so excuse-I need to capture some traffic from a problematic modem on a CBR8. I'm using the cable monitor function as per .I successfully get the pcap files for both downstream and upstream (its a 24x8 bonded modem)-but when I look at in Wireshark, I can see the packet sizes changing (I'm doing a 1400 byte ping just to test to the public IP on the CM)-but no layer 3 and above info. If I treat the frames as DOCSIS, I can see the DOCSIS info-but nothing "above" that. Do I need to use cable intercept to view the raw IP/TCP info encapsulated within the pcap, rather than cable monitor?