Text
Practical packet analysis: using Wireshark to solve real-world network problems
Table of Contents
Chapter 1 Packet Analysis and Network Basics
Packet Analysis and Packet Sniffers
How Computers Communicate
Traffic Classifications
Final Thoughts
Chapter 2 Tapping into the Wire
Living Promiscuously
Sniffing Around Hubs
Sniffing in a Switched Environment
Sniffing in a Routed Environment
Sniffer Placement in Practice
Chapter 3 Introduction to Wireshark
A Brief History of Wireshark
The Benefits of Wireshark
Installing Wireshark
Wireshark Fundamentals
Chapter 4 Working with Captured Packets
Working with Capture Files
Working with Packets
Setting Time Display Formats and References
Setting Capture Options
Using Filters
Chapter 5 Advanced Wireshark Features
Network Endpoints and Conversations
Protocol Hierarchy Statistics
Name Resolution
Protocol Dissection
Following TCP Streams
Packet Lengths
Graphing
Expert Information
Chapter 6 Common Lower-Layer Protocols
Address Resolution Protocol
Internet Protocol
Transmission Control Protocol
User Datagram Protocol
Internet Control Message Protocol
Chapter 7 Common Upper-Layer Protocols
Dynamic Host Configuration Protocol
Domain Name System
Hypertext Transfer Protocol
Final Thoughts
Chapter 8 Basic Real-World Scenarios
Social Networking at the Packet Level
Capturing ESPN.com Traffic
Real-World Problems
Final Thoughts
Chapter 9 Fighting a Slow Network
TCP Error-Recovery Features
TCP Flow Control
Learning from TCP Error-Control and Flow-Control Packets
Locating the Source of High Latency
Network Baselining
Final Thoughts
Chapter 10 Packet Analysis for Security
Reconnaissance
Exploitation
Final Thoughts
Chapter 11 Wireless Packet Analysis
Physical Considerations
Wireless Card Modes
Sniffing Wirelessly in Windows
Sniffing Wirelessly in Linux
802.11 Packet Structure
Adding Wireless-Specific Columns to the Packet List Pane
Wireless-Specific Filters
Wireless Security
Final Thoughts
Appendix Further Reading
Packet Analysis Tools
Packet Analysis Resources
No other version available