I just use tcpdump:
tcpdump -i eth0 -vvv host
amprgw.sysnet.ucsd.edu or ip proto \\icmp
tcpdump -vvv -s0 -n proto ipencap
I would recommend amprnet operators starting a network
analyzer on your
network
(like wireshark) every time you have made a configuration change, added some
equipment,
or just have a few minutes of time to spend.