• By the end of this lesson, the you will be able to:
▫ Understand the main menus and commands of Wireshark
▫ Start capturing data with the Wireshark software
▫ Configure basic parameters with Wireshark
Yoram Orzach is Experienced Instructor in the areas of IP technologies, network design, network analysis and optimization and network forensics, providing courses based on strong theoretical background and real-world case studies, based on many years of training and field experience world-wide.
lesson 2- Network analysis Using Wireshark introduction to cellular feb-2017
1. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 1
Chapter Content
Network analysis Using Wireshark
Lesson 2:
Introduction to Wireshark
2. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 2
• By the end of this lesson, the you will be able to:
▫ Understand the main menus and commands of Wireshark
▫ Start capturing data with the Wireshark software
▫ Configure basic parameters with Wireshark
Lesson Objectives
3. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 3
yoram@ndi-com.com
For More lectures, Courses & Keynote Speaking
Contact Me to:
4. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 4
A brief history and introduction
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“Experience is a hard teacher because she gives the
test first, the lesson afterwards“
Vernon Sanders Law
5. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 5
What’s in the Status Bar
6. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 6
Wireshark Main Menu - File
7. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 7
Wireshark Main Menu - Edit
PIC-003c
8. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 8
Wireshark Main Menu - View
9. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 9
Wireshark Main Menu - Go
10. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 10
Wireshark Main Menu - Capture
11. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 11
Wireshark Main Menu - Analyze
12. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 12
Wireshark Main Menu - Statistics
13. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 13
Wireshark Main Menu - Telephony
14. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 14
Wireshark Main Menu - Wireless
15. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 15
Wireshark Main Menu - Tools
16. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 16
Wireshark Main Menu - Help
17. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 17
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“Experience is a hard teacher because she gives the
test first, the lesson afterwards“
Vernon Sanders Law
18. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 18
Capture Options
19. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 19
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“Imagination is more important that knowledge“
Albert Einstein
20. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 20
Preferences - Appearance
21. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 21
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“The important thing I not to stop questioning“
Albert Einstein
22. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 22
Time Display Format
23. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 23
Time Display Format - Example
Seconds since beginning of capture:
Seconds since previous displayed packet:
Example 2-2
24. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 24
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“The important thing I not to stop questioning“
Albert Einstein
25. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 25
Name Resolution - Configuration
Edit Preferences Name resolution
View Name resolution
26. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 26
Name Resolution – What We Get
Before network name resolution:
After network name resolution:
27. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 27
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“Do not worry about your difficulties in Mathematics.
I can assure you mine are still greater.“
Albert Einstein
28. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 28
Coloring and Navigation Techniques
Example 2-5
29. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 29
Colorizing Specific Session
Check here or V:
View Coloring Rules …
30. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 30
The Coloring Rule Window
Add/Delete
rule
Import a
template
31. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 31
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“Try not to become a man of success but
rather to become a man of value.“
Albert Einstein
32. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 32
The Preferences Window
1
2 3
33. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 33
Layout and Columns
34. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 34
Preferences – Name Resolution
L2/L3/L4
name resolution
DNS/Hosts
name resolution
SMMP object
IDs resolution
GeoIP
35. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 35
Preferences: Protocols Example
36. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 36
A brief history and introduction
Wireshark main window
Starting the capture of data
Configuring the start window
Using time values and summaries
Chapter Content
Configuring name resolution
Navigation and colorization techniques
Preferences configuration
File operations – save and export
“Personally I'm always ready to learn,
although I do not always like being taught.“
Winston Churchil
37. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 37
Saving/Exporting a File
38. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 38
And for the Interesting Stuff …
39. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 39
Summary
• In this lesson we talked about:
▫ Wireshark origins and when we can use it
▫ Wireshark menus and how to use them
▫ Wireshark basic configuration tasks
Thanks for your time
Yoram Orzach
yoram@ndi-com.com
40. Network Analysis Using Wireshark Version 2Network Analysis using Wireshark V.2 yoram@ndi-com.com
Network analysis using Wireshark V2 yoram@ndi-com.comPage 40
yoram@ndi-com.com
For More lectures, Courses & Keynote Speaking
Contact Me to: