官术网_书友最值得收藏!

Time for action – sniffing wireless packets

Follow the following instructions to begin sniffing packets:

  1. Power up the Access Point Wireless Lab that we configured in Chapter 1, Wireless Lab Setup.
  2. Start Wireshark by typing Wireshark & in the console. Once Wireshark is running, navigate to Capture | Interfaces.
    Time for action – sniffing wireless packets
  3. Select packet capture from the mon0 interface by clicking on the Start button to the right of the mon0 interface as shown in the previous screenshot. Wireshark will begin the capture, and now you should see packets within the Wireshark window.
    Time for action – sniffing wireless packets
  4. These are wireless packets that your wireless adapter is sniffing off the air. In order to view any packet, select it in the top window and the entire packet will be displayed in the middle window.
    Time for action – sniffing wireless packets

    Click on the triangle in front of IEEE 802.11 Wireless LAN management frame to expand and view additional information.

Look at the different header fields in the packet and correlate them with the WLAN frame types and sub-types you have learned earlier.

What just happened?

We just sniffed out first set of packets off the air! We launched Wireshark, which used the monitor mode interface mon0 we created previously. You should notice, by looking at Wireshark's footer region, the speed at which the packets are being captured and also the number of packets captured till now.

Have a go hero – finding different devices

Wireshark traces can be a bit daunting at times; even for a reasonably populated wireless network, you could end up sniffing a few thousand packets. Hence, it is important to be able to drill down to those packets that interest us. This can be accomplished using filters in Wireshark. Explore how you can use these filters to identify unique wireless devices in the traces– both access points and wireless clients.

If you are unable to do this, don't worry as this is the next thing we will learn.

主站蜘蛛池模板: 交口县| 望谟县| 镇远县| 阿合奇县| 恩平市| 平顺县| 个旧市| 任丘市| 芦山县| 时尚| 门源| 东辽县| 扎囊县| 南康市| 麟游县| 瑞昌市| 柯坪县| 高阳县| 安庆市| 英德市| 湄潭县| 仪陇县| 南溪县| 延津县| 恩平市| 大渡口区| 武功县| 衡阳县| 永嘉县| 柏乡县| 华阴市| 福安市| 朝阳县| 湟中县| 黔西县| 黄山市| 彰化市| 陕西省| 福安市| 玛沁县| 宜川县|