We use Wireshark to capture network traffic . After analyzing Wireshark logs we can even decrypt the encrypted traffic with the SSL key for that particular host/URL Main issue is to find bottleneck and we used Splunk and foglight for that . To monitor live traffic in prod we use CONVIVA.