Wireshark Essential Training

English | MP4 | AVC 1280×720 | AAC 48KHz 2ch | 2h 25m | 424 MB

Wireshark Essential Training provides a solid overview of deep packet inspection by stepping through the basics of packet capture and analysis using Wireshark. In this course, Lisa Bock helps you understand the field values of the protocols and what’s considered normal behavior using precaptured packets from online repositories. Lisa helps you navigate through the many features of Wireshark. She begins by stressing the benefits of traffic analysis and discussing how this powerful tool can be used to examine traffic either live from wired or wireless connections. She compares the legacy and next generation versions of Wireshark, demonstrates how to install this tool on a PC and on a Mac, and explores the Wireshark interface. She then moves into deep packet analysis of common protocols such as TCP, IP, DHCP, and DNS. To wrap up, she summarizes working with packet captures, discusses the Wireshark expert system, and goes over how Wireshark can help detect network latency issues. She also illustrates ways to subset traffic and then share captures using CloudShark. Lisa walks participants through the basics, so no previous experience with Wireshark is necessary.

Topics include:

  • Benefits of traffic analysis
  • Navigating the Wireshark interface
  • Frame formation and the OSI Model
  • Understanding the TCP/IP suite
  • Deep packet analysis of common protocols: DNS, DHCP, and FTP
  • Identifying network latency issues
  • Working with packet captures
Table of Contents

1 Welcome
2 What you need to know
3 Challenges
4 Disclaimer

Traffic Capture Overview
5 Benefits of traffic analysis
6 Legacy versus Wireshark NG
7 Download and install on a PC or MAC

Getting Started with Wireshark
8 Explore the Wireshark interface
9 Getting help
10 Tap into the data stream
11 Using display and capture filters
12 The OSI model
13 Frame formation
14 Challenge

Examining the Internet Suite
15 Understanding the TCP IP suite
16 TCP
17 TCP handshake and teardown
18 UDP
19 IPv4
20 IPv6
22 ICMPv6
23 Challenge
24 Solution

Deep Packet Analysis of Common Protocols
25 DNS
27 FTP
29 ARP
30 Challenge
31 Solution

Working with Packet Captures
32 The Wireshark expert system
33 Network latency issues
34 Subset save and export
35 Using CloudShark

36 What s next

