官术网_书友最值得收藏!

Wireshark essentials

Readers who are familiar with the basics of Wireshark can skip this section and proceed with the case studies; however, readers who are unfamiliar with the basics or who need to brush up on Wireshark essentials, can feel free to continue through this section. Let's look at some of the most basic features of Wireshark. Look at the following screenshot:

Wireshark

Once we execute Wireshark, we are presented with a screen similar to the preceding picture. On the left-hand side, we have a list of the available interfaces to capture packets from. In the middle, we have recent packet capture files and on the right- hand side, we have online help and user guides. To start a new packet-capture, you can select an interface, such as Ethernet, if you are connected over the wire, or Wi-Fi, if you are connected on a wireless network. Similarly, if you need to open a packet-capture file, you can press the Open button, browse to the capture file, and load it in the Wireshark tool. Let's capture packets from the wireless interface by selecting Wi-Fi and pressing the Start button, as shown in the following screenshot:

We can see from the preceding screenshot that we have various types of packets flowing on the network. Let's understand TCP conversations, endpoints, and basic Wireshark filters in the upcoming sections.

主站蜘蛛池模板: 昌都县| 古丈县| 独山县| 望城县| 衡阳县| 来宾市| 扶余县| 镇原县| 商丘市| 陈巴尔虎旗| 台中市| 利津县| 新平| 康定县| 阿合奇县| 海口市| 怀仁县| 南丹县| 都安| 雅安市| 海南省| 东兰县| 黔西县| 巍山| 塘沽区| 巨鹿县| 邹城市| 徐闻县| 尼玛县| 南充市| 玉山县| 永丰县| 永泰县| 林西县| 鸡东县| 巫溪县| 临海市| 鞍山市| 鄂托克旗| 永清县| 同德县|