Learn Wireshark: A definitive guide to expertly analyzing protocols and troubleshooting networks using Wireshark 2nd Edition

Learn Wireshark: A definitive guide to expertly analyzing protocols and troubleshooting networks using Wireshark 2nd Edition book cover

Learn Wireshark: A definitive guide to expertly analyzing protocols and troubleshooting networks using Wireshark 2nd Edition

Author(s): Lisa Bock (Author)

  • Publisher: Packt Publishing
  • Publication Date: 5 Aug. 2022
  • Edition: 2nd
  • Language: English
  • Print length: 606 pages
  • ISBN-10: 180323167X
  • ISBN-13: 9781803231679

Book Description

Expertly analyze common protocols such as TCP, IP, and ICMP, along with learning how to use display and capture filters, save and export captures, create IO and stream graphs, and troubleshoot latency issues

Key Features

  • Gain a deeper understanding of common protocols so you can easily troubleshoot network issues
  • Explore ways to examine captures to recognize unusual traffic and possible network attacks
  • Learn advanced techniques, create display and capture filters, and generate IO and stream graphs

Book Description

Wireshark is a popular and powerful packet analysis tool that helps network administrators investigate latency issues and potential attacks. Over the years, there have been many enhancements to Wireshark’s functionality. This book will guide you through essential features so you can capture, display, and filter data with ease. In addition to this, you’ll gain valuable tips on lesser-known configuration options, which will allow you to complete your analysis in an environment customized to suit your needs.

This updated second edition of Learn Wireshark starts by outlining the benefits of traffic analysis. You’ll discover the process of installing Wireshark and become more familiar with the interface. Next, you’ll focus on the Internet Suite and then explore deep packet analysis of common protocols such as DNS, DHCP, HTTP, and ARP. The book also guides you through working with the expert system to detect network latency issues, create I/O and stream graphs, subset traffic, and save and export captures. Finally, you’ll understand how to share captures using CloudShark, a browser-based solution for analyzing packet captures.

By the end of this Wireshark book, you’ll have the skills and hands-on experience you need to conduct deep packet analysis of common protocols and network troubleshooting as well as identify security issues.

What you will learn

  • Master network analysis and troubleshoot anomalies with Wireshark
  • Discover the importance of baselining network traffic
  • Correlate the OSI model with frame formation in Wireshark
  • Narrow in on specific traffic by using display and capture filters
  • Conduct deep packet analysis of common protocols: IP, TCP, and ARP
  • Understand the role and purpose of
  • ICMP, DNS, HTTP, and DHCP
  • Create a custom configuration profile and personalize the interface
  • Create I/O and stream graphs to better visualize traffic

Who this book is for

If you are a network administrator, security analyst, student, or teacher and want to learn about effective packet analysis using Wireshark, then this book is for you. In order to get the most from this book, you should have basic knowledge of network fundamentals, devices, and protocols along with an understanding of different topologies.

Table of Contents

  1. Appreciating Traffic Analysis
  2. Using Wireshark
  3. Installing Wireshark
  4. Exploring the Wireshark Interface
  5. Tapping into the Data Stream
  6. Personalizing the Interface
  7. Using Display and Capture Filters
  8. Outlining the OSI Model
  9. Decoding TCP and UDP
  10. Managing TCP Connections
  11. Analyzing IPv4 and IPv6
  12. Discovering ICMP
  13. Diving into DNS
  14. Examining DHCP
  15. Decoding HTTP
  16. Understanding ARP
  17. Determining Network Latency Issues
  18. Subsetting, Saving, and Exporting Captures
  19. Discovering I/O and Stream Graphs
  20. Using CloudShark for Packet Analysis

Editorial Reviews

Review

“Learn Wireshark is a must-read for network administrators, security analysts, and anyone seeking a deep understanding of Wireshark, a powerful packet analysis tool. This comprehensive guide offers an in-depth look into essential protocols such as TCP, IP, ICMP, DNS, DHCP, and ARP. The book’s strength lies in its clear and accessible presentation, demystifying complex protocols and making them easy to understand. The guide covers display and capture filters, IO and stream graphs, and latency troubleshooting, providing a rich learning experience. What sets this book apart is its focus on hands-on learning. It takes readers from understanding the significance of baselining network traffic to deep packet analysis. Readers will acquire practical skills, such as creating custom configuration profiles, generating IO and stream graphs, and sharing captures via CloudShark. The book combines theory and practical application, catering to both beginners and experienced users. For those new to the field, the introduction to network fundamentals, devices, and protocols lays a solid foundation. More experienced readers will find the in-depth exploration of advanced techniques insightful and beneficial.”

Joe Shenouda, Cybersecurity Expert at Cyber Consult

About the Author

Lisa Bock is an experienced author with a demonstrated history of working in the e-learning industry. She is a security ambassador with a broad range of IT skills and knowledge, including on Cisco Security, CyberOps, Wireshark, biometrics, ethical hacking, and IoT. Lisa is an author for LinkedIn Learning and an award-winning speaker who has presented at several national conferences. She holds an MS in computer information systems/information assurance from UMGC. Lisa was an associate professor in the IT department at Pennsylvania College of Technology (Williamsport, PA) from 2003 until her retirement in 2020. She is involved with various volunteer activities, and she and her husband Mike enjoy bike riding, watching movies, and traveling.

View on Amazon

电子书代发PDF格式价格30我要求助
未经允许不得转载:Wow! eBook » Learn Wireshark: A definitive guide to expertly analyzing protocols and troubleshooting networks using Wireshark 2nd Edition