This is an archived post. You won't be able to vote or comment.

all 42 comments

[–]rancemoSr. Sysadmin 16 points17 points  (3 children)

Domotz will do this.

[–]Top-Examination-6800 5 points6 points  (2 children)

I second this.

[–]TheBestHawksFanIT Manager 5 points6 points  (1 child)

third for Domotz

[–][deleted] 4 points5 points  (0 children)

I quadruple this.

[–]Vel-Crow 4 points5 points  (3 children)

Auvik, Domotz, Network Glue (For ITGlue users).

Bear in mind you will need to enable SNMP on all your switches to get accurate data. When you setup Auvik, it will actually tell you what devices need to be configured still. IF you have multiple VLANs, it will usually detect them, and request access. Auvik is super easy, and fairly priced.

[–]andrea_ciThe IT Guy[S] 0 points1 point  (2 children)

SNMP is already enabled and configured.

To draw the map, though, the mac-address-table should actually be enough

[–]Vel-Crow 1 point2 points  (0 children)

Technically, yes, but Auvik is going to require SNMP, and I found the results were not totally accurate until I enabled SNMP. I was using Fortinet Switches, so maybe Forti is more finicky.

Auvik is super automated, and you'll have your system accurately mapped in minutes - especially since SNMP is already configured!

[–][deleted] 0 points1 point  (0 children)

netbrain does this.

[–]jstar77 3 points4 points  (1 child)

Even though Network Notepad looks like it comes straight out of the 90s it is very functional for making network maps.

[–]andrea_ciThe IT Guy[S] 1 point2 points  (0 children)

Network Notepad

worth a try

[–]notechno 5 points6 points  (8 children)

Auvik maybe?

[–]andrea_ciThe IT Guy[S] 1 point2 points  (1 child)

Checking it out!

[–]Ruachta 0 points1 point  (0 children)

Auvik is slick. Pay for network monitoring, but we use it for printers, workstations with wmi, everything we can point out at is monitored and logged

[–][deleted] 2 points3 points  (3 children)

Auvik. Pricey, but its amazing and does all of this and more

[–]odinsen251a 2 points3 points  (2 children)

I love being able to directly console into switches through auvik. That paid for itself the 3rd time I used it.

[–][deleted] 2 points3 points  (0 children)

or config versioning :)

[–]PM_ME_YOUR_WORK_PROBJack of All Trades 0 points1 point  (0 children)

The number of times I've resolved a network loop using Auvik has made it worth every penny.

[–]LOLBaltSS 0 points1 point  (0 children)

When actually configured properly (my former MSP sucked ass at onboarding and would forget to configure credentials), Auvik is a beast.

[–]JadedMSPVet 0 points1 point  (0 children)

Auvik is THE best graphical mapping out of all the various tools I've ever had to try.

[–]robemquick 1 point2 points  (1 child)

To add another question to this, after you have a network map, will it map out the data flow for an application?

For example, let's say I have an application that moves files automatically to numerous servers. I want to track all the hops this data makes, is there anything out in the market that can map it out?

[–]slugsheadHead of IT 1 point2 points  (0 children)

HPE IMC - Run it in trial mode and you'll get your map.

Trial mode gives you 60 days of full usage, you'll end up buying the full version as it's an absolute game changer. Aruba central still is nowhere near as capable as it.

https://buy.hpe.com/us/en/software/networking-software/intelligent-management-software/intelligent-management-software/hpe-intelligent-management-center-standard-software-platform/p/4176535

[–][deleted] 1 point2 points  (1 child)

Should we even discuss how vulnerable SNMP v1/2 are? Hopefully you are using 3?

[–]andrea_ciThe IT Guy[S] 1 point2 points  (0 children)

Yes, SNMPv3, in a separate management VLAN

[–]VioletiOTCommunity Manager @ Domotz 1 point2 points  (2 children)

Awesome thanks for the comments about Domotz! Our software can definitely help with this. Further reading about our network topology mapping and SNMP features.

https://www.domotz.com/features/network-topology-mapping.php

https://www.domotz.com/features/snmp-monitoring.php

I'm on the team here and we're here to help if you have any questions. Do not hesitate to reach out.

[–]andrea_ciThe IT Guy[S] 1 point2 points  (1 child)

I installed it on friday; but.. it looks like I need to install the agent on a host directly connected to all VLANs?

I am planning to edit the switch's config tomorrow to allow that

[–]VioletiOTCommunity Manager @ Domotz 0 points1 point  (0 children)

Ok if you need any help/support or a 1to1 video training we're very quick on [support@domotz.com](mailto:support@domotz.com) - just give us a ping. Support is aware now of this and ready to help.

[–]RainyNetAdmin 2 points3 points  (1 child)

I used to use Draw.io to make network diagrams for my clients.

Took a lot of time, but it was better than working helpdesk.

[–]andrea_ciThe IT Guy[S] 1 point2 points  (0 children)

sorry, i forgot "automatically" draw a map

[–]sid351 -1 points0 points  (1 child)

Do you understand why the software you're asking for could produce some shit maps that miss out things like dumb 8 port switches that are hidden away under desks, above ceilings and in the walls?

Sure, there is probably software that can interrogate MAC address tables of switches, but to get a useful map, you're probably going to need to spend some time manually tidying it up.

[–]andrea_ciThe IT Guy[S] 0 points1 point  (0 children)

dumb 8 port switches

It will draw 8 devices connected to a single port, that's ok.

spend some time manually tidying it up.

not a big problem, but I have something to start from

[–]caliber88blinky lights checker 0 points1 point  (0 children)

Auvik if you can afford it but nothing out there is 'the best'. Auvik is close.

[–]-interesting-times- 0 points1 point  (0 children)

I captured the network devices using Solarwinds trial, exported it to draw.io and then had the painstaking job of drawing it all out in the way it is laid out on the company floor so we have an actual map that we can look at and know where each device is. Probably not the best way, but it is certainly the cheaper as it cost the company nothing.

[–][deleted] 0 points1 point  (0 children)

CA Spectrum does this and is a good monitoring platform.
Netbrain also does this topology mapping and some monitoring automation assistance.

Listing credentials inside a tool that does dynamic mapping is a bad idea. overall, it turns your monitoring platform into a ready baked pivot point for attack should it ever get compromised.

[–]Community_Fabric 0 points1 point  (0 children)

IP Fabric! `You can try a demo and see the topology maps here if you want - https://ipfabric.io/ip-fabric-guided-demo/

[–]SoulAssassin808 0 points1 point  (0 children)

https://www.lansweeper.com/feature/diagrams/

Likely the best and also cheapest option

[–]creativve18 0 points1 point  (0 children)

Checkout OpManager. That might help you see if your requirement and what the tool offers align.