Wireshark 2 Quick Start Guide: Secure your network through protocol analysis
暫譯: Wireshark 2 快速入門指南:透過協議分析保護您的網路
Charit Mishra
- 出版商: Packt Publishing
- 出版日期: 2018-06-25
- 售價: $1,400
- 貴賓價: 9.5 折 $1,330
- 語言: 英文
- 頁數: 164
- 裝訂: Paperback
- ISBN: 1789342783
- ISBN-13: 9781789342789
-
相關分類:
Wireshark
海外代購書籍(需單獨結帳)
相關主題
商品描述
Protect your network as you move from the basics of the Wireshark scenarios to detecting and resolving network anomalies.
Key Features
- Learn protocol analysis, optimization and troubleshooting using Wireshark, an open source tool
- Learn the usage of filtering and statistical tools to ease your troubleshooting job
- Quickly perform root-cause analysis over your network in an event of network failure or a security breach
Book Description
Wireshark is an open source protocol analyser, commonly used among the network and security professionals. Currently being developed and maintained by volunteer contributions of networking experts from all over the globe. Wireshark is mainly used to analyze network traffic, analyse network issues, analyse protocol behaviour, etc. - it lets you see what's going on in your network at a granular level. This book takes you from the basics of the Wireshark environment to detecting and resolving network anomalies.
This book will start from the basics of setting up your Wireshark environment and will walk you through the fundamentals of networking and packet analysis. As you make your way through the chapters, you will discover different ways to analyse network traffic through creation and usage of filters and statistical features. You will look at network security packet analysis, command-line utilities, and other advanced tools that will come in handy when working with day-to-day network operations.
By the end of this book, you have enough skill with Wireshark 2 to overcome real-world network challenges.
What you will learn
- Learn how TCP/IP works
- Install Wireshark and understand its GUI
- Creation and Usage of Filters to ease analysis process
- Understand the usual and unusual behaviour of Protocols
- Troubleshoot network anomalies quickly with help of Wireshark
- Use Wireshark as a diagnostic tool for network security analysis to identify source of malware
- Decrypting wireless traffic
- Resolve latencies and bottleneck issues in the network
Who This Book Is For
If you are a security professional or a network enthusiast who is interested in understanding the internal working of networks and packets, then this book is for you. No prior knowledge of Wireshark is needed.
Table of Contents
- Installing Wireshark
- Introduction to Wireshark and Packet Analysis
- Filtering Our Way in Wireshark
- Analyzing Application Layer Protocol
- Analyzing the Transport Layer Protocols TCP/UDP
- Network Security Packet analysis
- Analyzing Traffic in Thin Air
- Mastering the Advanced Features of Wireshark
商品描述(中文翻譯)
保護您的網路,從 Wireshark 的基本情境轉向檢測和解決網路異常。
主要特點
- 學習使用 Wireshark 這個開源工具進行協議分析、優化和故障排除
- 學習使用過濾和統計工具來簡化故障排除工作
- 在網路故障或安全漏洞事件中快速執行根本原因分析
書籍描述
Wireshark 是一款開源的協議分析工具,廣泛應用於網路和安全專業人士中。它目前由來自全球的網路專家志願者貢獻進行開發和維護。Wireshark 主要用於分析網路流量、分析網路問題、分析協議行為等 - 讓您能夠在細微層面上了解網路的運作情況。本書將帶您從 Wireshark 環境的基本知識開始,進而檢測和解決網路異常。
本書將從設置 Wireshark 環境的基本知識開始,並引導您了解網路和封包分析的基本原理。在您逐章學習的過程中,您將發現通過創建和使用過濾器及統計功能來分析網路流量的不同方法。您將學習網路安全封包分析、命令行工具以及其他在日常網路操作中非常有用的高級工具。
在本書結束時,您將具備足夠的 Wireshark 2 技能,以應對現實世界中的網路挑戰。
您將學到的內容
- 學習 TCP/IP 的運作原理
- 安裝 Wireshark 並了解其圖形用戶界面
- 創建和使用過濾器以簡化分析過程
- 理解協議的正常和異常行為
- 利用 Wireshark 快速排除網路異常
- 使用 Wireshark 作為網路安全分析的診斷工具,以識別惡意軟體的來源
- 解密無線流量
- 解決網路中的延遲和瓶頸問題
本書適合對象
如果您是安全專業人士或對理解網路和封包的內部運作感興趣的網路愛好者,那麼本書適合您。無需具備 Wireshark 的先前知識。
目錄
1. 安裝 Wireshark
2. Wireshark 和封包分析簡介
3. 在 Wireshark 中進行過濾
4. 分析應用層協議
5. 分析傳輸層協議 TCP/UDP
6. 網路安全封包分析
7. 在空中分析流量
8. 精通 Wireshark 的高級功能