官术网_书友最值得收藏!

Chapter 3. Capturing All the Right Packets

In order to analyze packets to troubleshoot connectivity, performance, or security issues, you have to successfully capture all of the right packets and then identify and filter out just the packets that pertain to the goal at hand.

In this chapter, we will cover the following topics:

  • Picking the best capture point
  • TAPs and switch port mirroring
  • Wireshark's capture interfaces, filters, and options
  • Verifying a good capture
  • Isolating the conversation(s) of interest
  • Using the Wireshark Conversations window
  • Wireshark's display filters
  • Filtering expression buttons
  • Following TCP/UDP/SSL streams
  • Marking and ignoring packets
  • Saving filtered traffic

You'll recognize that many of these activities are the same ones that we accomplished in Chapter 1, Getting Acquainted with Wireshark, to perform a capture and filter just the packets involved in loading a web page. In this chapter, we'll expand and finish rounding out your skills in all these topics.

主站蜘蛛池模板: 宝山区| 屏南县| 阜新| 东乌珠穆沁旗| 莱西市| 平和县| 东港市| 眉山市| 平遥县| 莱西市| 上思县| 塔城市| 上饶县| 丹巴县| 嵊泗县| 巢湖市| 阜康市| 佛山市| 锦屏县| 彭泽县| 平阳县| 若羌县| 射阳县| 泗阳县| 韩城市| 洛宁县| 新巴尔虎左旗| 招远市| 祥云县| 吉木乃县| 乐亭县| 桐乡市| 濉溪县| 万全县| 衡山县| 凤城市| 化州市| 珲春市| 贵阳市| 嘉善县| 色达县|