官术网_书友最值得收藏!

Chapter 3. Capturing All the Right Packets

In order to analyze packets to troubleshoot connectivity, performance, or security issues, you have to successfully capture all of the right packets and then identify and filter out just the packets that pertain to the goal at hand.

In this chapter, we will cover the following topics:

  • Picking the best capture point
  • TAPs and switch port mirroring
  • Wireshark's capture interfaces, filters, and options
  • Verifying a good capture
  • Isolating the conversation(s) of interest
  • Using the Wireshark Conversations window
  • Wireshark's display filters
  • Filtering expression buttons
  • Following TCP/UDP/SSL streams
  • Marking and ignoring packets
  • Saving filtered traffic

You'll recognize that many of these activities are the same ones that we accomplished in Chapter 1, Getting Acquainted with Wireshark, to perform a capture and filter just the packets involved in loading a web page. In this chapter, we'll expand and finish rounding out your skills in all these topics.

主站蜘蛛池模板: 芜湖县| 石首市| 自治县| 吉木萨尔县| 连平县| 云安县| 同江市| 余庆县| 海盐县| 新郑市| 宝应县| 长白| 南投市| 通江县| 澳门| 泸西县| 轮台县| 会理县| 酉阳| 承德县| 麦盖提县| 金门县| 丹凤县| 西藏| 阜宁县| 莆田市| 绥芬河市| 宝鸡市| 雷波县| 丘北县| 南靖县| 鄂州市| 本溪市| 武定县| 印江| 扎鲁特旗| 灵宝市| 达尔| 志丹县| 兴安盟| 龙游县|