From the course: Protecting Your Network with Open-Source Software
Unlock the full course today
Join today to access over 24,700 courses taught by industry experts.
Exploring Wireshark's advanced features
From the course: Protecting Your Network with Open-Source Software
Exploring Wireshark's advanced features
- [Instructor] Once you get used to the basic features of Wireshark, it's time to learn some more advanced features to make your life easier when using Wireshark. One of these useful extra Wireshark features is to use filters. Wireshark sometimes gives you the experience of information overload because there's just so much to review. Therefore, knowing how to use filters is essential to avoid this information overload problem. In our previous lesson, we already used a filter to hide network messages other than those using transmission control protocol or TCP. Another useful feature is DNS resolution. Usually, you get a bunch of numeric IP addresses in your Wireshark display. Resolving these IP addresses into more meaningful domain names allows you to spot hosts of your interest more quickly. Another useful feature is to start your Wireshark program and to be able to capture your packets right away without really having to navigate through the graphical user interface or GUI and then…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
(Locked)
What is packet analysis?3m 11s
-
(Locked)
ARP poisoning example4m 44s
-
(Locked)
Packet capturing with Wireshark4m 3s
-
(Locked)
Exploring Wireshark's advanced features2m 3s
-
(Locked)
Wireshark hands-on3m 18s
-
(Locked)
Challenge: Filtering with IP addresses and port numbers1m 24s
-
(Locked)
Solution: Filtering with IP addresses and port numbers1m 12s
-
(Locked)
-
-
-