Wireshark: Network Troubleshooting
1h 30mIntermediate2020-07-28
Authors

Lisa Bock
Security ambassador with a broad range of IT skills and knowledge
Course details
Learn how to analyze network problems with Wireshark, a free, open-source packet analysis tool used by network administrators around the world. In this course, Lisa Bock demonstrates how to get the most out of Wireshark, so that you can better evaluate your network and keep traffic moving. You can discover how to use time as a metric for visualizing delays. In addition, you can get an introduction to some of the most helpful tools within Wireshark, such as TCP, I/O, and flow graphs. Finally, learn how to visualize transmission errors and recognize common attack signatures.
Topics include:
Exploring Wireshark capture options
Analyzing a capture
Using time as a metric
Viewing conversations and endpoints
Creating flow and I/O graphs
Graphing the TCP streams
Protecting your network from packet sniffing
Recognizing abnormal or malicious traffic
Topics include:
Exploring Wireshark capture options
Analyzing a capture
Using time as a metric
Viewing conversations and endpoints
Creating flow and I/O graphs
Graphing the TCP streams
Protecting your network from packet sniffing
Recognizing abnormal or malicious traffic
Skills covered
WiresharkNetwork SecurityNetwork AdministrationCybersecurityNetwork and System AdministrationOpen SourceDeep Dive (X:Y)
Concepts
0. Introduction
- 01 - Analyze network problems
- 02 - What you need to know
1. Traffic Capture and Analysis
- 03 - Getting the most out of Wireshark
- 04 - Navigating the Wireshark interface
- 05 - Investigating the Edit menu choice
- 06 - Exploring the View menu choice
- 07 - Getting ready to capture
- 08 - Examining a capture
- 09 - Challenge - Examining evidence of congestion
- 10 - Solution - Examining evidence of congestion
2. Using Time as a Metric
- 11 - Displaying time
- 12 - Viewing details and expert information
- 13 - Graphing the TCP streams
- 14 - Challenge - Using time to view gaps in transmission
- 15 - Solution - Using time to view gaps in transmission
3. Wireshark Tools
- 16 - Viewing conversations and endpoints
- 17 - Creating a flow graph
- 18 - Plot an I O graph
- 19 - Challenge - Using a flow graph
- 20 - Solution - Using a flow graph
4. Recognizing Abnormal or Malicious Traffic
- 21 - Troubleshooting the network
- 22 - Spotting an ARP storm
- 23 - Identifying bursty traffic
- 24 - Protecting from packet sniffing
- 25 - Examining macof attacks
- 26 - Challenge - Viewing unencrypted traffic
- 27 - Solution - Viewing unencrypted traffic
Conclusion
- 28 - What's next