Navigating with Wireshark and ICMP, DNS, ping

The Technology Firm
The Technology Firm
28.1 هزار بار بازدید - 6 سال پیش - a lot more at
a lot more at https://www.thetechfirm.com/

I get a lot of requests from people asking how to use Wireshark what to look for and what filters to use. The feedback from was that they didn’t have time for a 5 day course and want tips and tricks on how to get going.

Even though I created a 20 minute, $20 course in January (https://www.udemy.com/wireshark-2-fun...) which was well received, I got requests for the same topics asking for more specifics.

It is important to separate ping and ICMP. Even though ping uses ICMP, ICMP can be used as an error reporting protocol sent by servers, routers, firewalls, etc. I’ve seen many analysts blindly filter out or ignore ICMP packets, missing valuable clues in their troubleshooting. ICMP can also ‘fix’ your applications quietly in the background which can easily break if someone decides to block it without doing their homework.


read the full article at  https://www.networkcomputing.com/auth...  when its posted
6 سال پیش در تاریخ 1397/09/07 منتشر شده است.
28,179 بـار بازدید شده
... بیشتر