Wireshark: Advanced Tools and Techniques

Wireshark: Advanced Tools and Techniques

English | MP4 | AVC 1280×720 | AAC 48KHz 2ch | 1h 49m | 327 MB

Enhance your Wireshark skillset by picking up some more sophisticated tools and techniques. In this course, instructor Lisa Bock takes a deep dive into advanced topics such as tapping into the stream, merging and sanitizing packet captures, capture engines, optimizing packet capture, and IO and stream graphs. Lisa begins with a review of network architecture. She covers ways to solve network problems, merge traffic, and sanitize captures before sharing, along with capturing session keys to decrypt traffic. She then reviews capture engines along with a discussion on wireless traffic. She reviews CLI capture—a more lightweight option that’s not resource intensive—and goes over IO graphs and TCP stream graphs, which can provide you with a closer look at traffic trends and round-trip time.

Topics include:

  • Tapping into the network
  • Baselining the network
  • Troubleshooting to discover the cause of a slow network
  • Merging traffic
  • Sanitizing packet captures
  • Capture engines
  • Optimizing packet captures
  • Basic and advanced IO graphs
  • TCP stream graphs
Table of Contents

Introduction
1 Enhance your skills
2 What you need to know

Tapping into the Stream
3 Enhance your skills
4 Network architecture
5 Tap into the network
6 Baselining the network
7 Restrictions and limitations
8 Challenge
9 Solution

Solving Network Problems
10 Network congestion
11 Case study – Spotify
12 Case study – Multicast
13 Merging traffic
14 Sanitizing packet captures

Capture Engines and Wi-Fi
15 Capture engines
16 Install Npcap
17 IEEE 802.11 overview
18 packet types

Command Line Capture
19 Optimize packet captures
20 tshark and dumpcap
21 text2pcap and capinfos
22 capinfos and editcap

IO and Stream Graphs
23 Basic IO graphs
24 Conversations and endpoints
25 TCP stream graphs
26 Advanced IO graphs

Conclusion
27 What s next