I am new to the Cisco environment and using sniffers. I am used to installing Wireshark on my PC and monitoring traffic for Instant Messaging. My new job I have to sniff traffic between one server to another server or PC. I currently setup port mirroring on a switch, plug in my PC into a port on the switch and run Wireshark. That is fine if I am at work and I want to carry my PC around but I now I am getting request for remote sites and sniffing their traffic. Can Netflow allow me to sniff one port on a switch and only log traffic from one ip address? Also can Netflow sniff Virtual servers?