官术网_书友最值得收藏!

Chapter 3. Capturing All the Right Packets

In order to analyze packets to troubleshoot connectivity, performance, or security issues, you have to successfully capture all of the right packets and then identify and filter out just the packets that pertain to the goal at hand.

In this chapter, we will cover the following topics:

  • Picking the best capture point
  • TAPs and switch port mirroring
  • Wireshark's capture interfaces, filters, and options
  • Verifying a good capture
  • Isolating the conversation(s) of interest
  • Using the Wireshark Conversations window
  • Wireshark's display filters
  • Filtering expression buttons
  • Following TCP/UDP/SSL streams
  • Marking and ignoring packets
  • Saving filtered traffic

You'll recognize that many of these activities are the same ones that we accomplished in Chapter 1, Getting Acquainted with Wireshark, to perform a capture and filter just the packets involved in loading a web page. In this chapter, we'll expand and finish rounding out your skills in all these topics.

主站蜘蛛池模板: 武安市| 永丰县| 桦川县| 苍梧县| 长白| 隆化县| 芮城县| 江都市| 涡阳县| 嘉义市| 武宣县| 元氏县| 东阳市| 子洲县| 建阳市| 泸州市| 随州市| 新干县| 封开县| 静安区| 南宁市| 竹山县| 大石桥市| 万全县| 栖霞市| 天门市| 荥阳市| 明溪县| 孟州市| 南宫市| 白城市| 南宫市| 沁源县| 共和县| 台湾省| 江源县| 关岭| 和田市| 阿拉尔市| 菏泽市| 宁城县|