Course Outline
Introduction
- Wireshark -- not just a last-resort tool
Overview of Network Troubleshooting Concepts
- Root cause analysis
Installing Wireshark
Overview of Wireshark Features
- Navigating the UI interface
Capturing Traffic in the Test Environment
- Selecting the network interface
- Capture packets on wired and wireless networks
Analyzing the Logs
- Inspecting the HTTP packets
- Viewing back-and-forth TCP streams
- Saving the log for offline inspection
Analyzing Connection Speed Issues When Connecting to a Particular Website
- Using filters
- Seeing the statistics
Analyzing by Traffic Type
- DNS, ARP, IPv4, IPv6, ICMP, UDP, TCP, and HTTP/HTTPS
- Consistently slow connections over prolonged periods of time
Checking Response Times
- Setting delta time columns
Checking for Machines Infected with a Virus
- Inspecting ARP traffic
Inspecting Sources of Network Traffic
- Intel ANS probe
- Broken/misconfigured software (network flooding)
Pinpointing Performance Issues
- Creating statistical charts and graphs
- Setting colors in Wireshark
- Filtering traffic
- Using Wireshark Expert System and TCP/IP Resolution Flowchart
Troubleshooting Connections within a Secured Network Environment
- Proxies, firewalls and clients
Configuring Wireshark for Optimal Performance
- Non-intrusive analysis
Troubleshooting
Summary and Conclusion
Requirements
- An understanding of TCP/IP networking principles
Testimonials
Trainer was very sophisticated, had a lot of knowledge and knew what he was talking about. The organization of the day was also very good (breaks between the "lessons").
Martyna Antonowicz, ATOS PGS sp. z o.o.
Basic knowledge was presented in very granular way.
Martyna Antonowicz, ATOS PGS sp. z o.o.
Trainer is well prepared and dedicated in making us understand. Well done.
Alan Lye - SBS Transit Ltd
First of all it was very interesting practically for all topics covered by this training. Well balanced with theory, practise labs and breaks. Some of tips and tricks I have introduced to my work yet.
Dawid Woźny - Martyna Antonowicz, ATOS PGS sp. z o.o.
Course was very interesting and help me understood thoroughly protocols construction. I am very glad that i attended with this course.
Martyna Antonowicz, ATOS PGS sp. z o.o.
That the Wojciech Wójcik knowledge is really huge.
Kornel - Martyna Antonowicz, ATOS PGS sp. z o.o.
trainer listen to participants
Bartosz - Martyna Antonowicz, ATOS PGS sp. z o.o.
The exercises and analysis portion is very enriching and enlightening.
MINDEF
The network forensics portion to identify unusual network traffic and possible attacks through investigation of pcap files.