Other

Introduction to Troubleshooting TCP/IP Networks With Wireshark WIRE-1B

  • 0 upcoming dates
  • $3,195 per seat

About this class

In this hands-on, instructor-led, five-day course, you will receive in-depth training on Wireshark and TCP/IP communications analysis. You will learn to use Wireshark to identify the most common causes of performance problems in TCP/IP communications. You will develop a thorough understanding of how to use Wireshark efficiently to spot the primary sources of network performance problems.

What you'll be able to do

  • Introduction to Network Analysis and Wireshark
  • Learn Capture Methods and Use Capture Filters
  • Customize for Efficiency: Configure Your Global
  • Navigate Quickly and Focus Faster with Coloring
  • Spot Network and Application Issues with Time
  • Create and Inter pret Basic Trace File Statistics
  • Focus on Traffic U sing Display Filters
  • TCP/IP Communications and Resolutions Overview
  • Analyze DNS Traffic
  • Analyze ARP Traffic
  • Analy ze Ipv4 Traffic
  • Analyze ICMP Traffic
  • Analyze UDP Traffic
  • Analyze TCP Protocol
  • Analyze TCP Protocol
  • Graph Traffic Characteristics
  • Analyze HTTP Traffic
  • Analyze TLS - Encrypted Traffic (HTTPS)
  • Review Your Key Troubleshooting Steps

Course outline

  1. Module 1Introduction to Network Analysis and Wireshark

    • TCP/IP Analysis Checklist
    • Top Causes of Performance Problems
    • Get the Latest Version of Wireshark
    • Capturing Traffic
    • Opening Trace Files
    • Processing Packets
    • GTK Interface
    • The Icon Toolbar
    • Mastering the Intelligent Scrollbar
    • The Changing Status Bar
    • Right-Click Functionality
    • General Analyst Resources
    • Your First Task When You Leave Class
  2. Module 2Learn Capture Methods and Use Capture Filters

    • Analyze Switched Networks
    • Walk -Through a Sample SPAN Configuration
    • Analyze Full -Duplex Links with a Network TAP
    • Analyze Wireless Networks
    • USB Capture
    • Initial Analyzing Placement
    • Remote Capture Techniques
    • Available Capture Interfaces
    • Save Directly to Disk
    • Capture File Configurations
    • Limit Your Capture with Capture Filters
    • Examine Key Capture Filters
  3. Module 3Customize for Efficiency: Configure Your Global

    • Preferences
    • First Step: Create a Troubleshooting Profile
    • Customize the User Interface
    • Add Custom Columns for the Packet List Pane
    • Set Your Global Capture Preferences
    • Define Name Resolution Preferences
    • Configure Individual Protocol Preferences
  4. Module 4Navigate Quickly and Focus Faster with Coloring

    • Techniques
    • Move Around Quickly: Navigation Techniques
    • Find a Packet Based on Various C haracteristics
    • Build Permanent Coloring Rules
    • Identify a Coloring Source
    • Apply Temporary Coloring
    • Mark Packets of Interest
  5. Module 5Spot Network and Application Issues with Time

    • Values and Summaries
    • Examine the Delta Time (End-of-Packet to End -of-Packet)
    • Set a Time Reference
    • Compare Timestamp Values
    • Compare Timestamps of Filtered Traffic
    • Enable and Use TCP Conversation Timestamps
    • Compare TCP Conversation Timestamp Values
    • Troubleshooting Example Using Time
    • Analyze Delay Types
  6. Module 6Create and Inter pret Basic Trace File Statistics

    • Examine Trace File Summary Information
    • View Active Protocols
    • Graph Throughput to Spot Performance Problems Quickly
    • Locate the Most Active Conversations and Endpoints
    • Other Conversation Options
    • Graph the Traffic Flows for a More Complete View
    • Bust Statistics
    • Numerous Other Statistics are Available
    • Quick Overview of VoIP Traffic Analysis Tools
    • SIP and RTP Analysis Overview
    • SIP Call Setup
    • Analyzing Call Setup with SIP
    • Session Bandwidth and RTP Port Definition
  7. Module 7Focus on Traffic U sing Display Filters

    • Display Filters
    • Filter on Conversations/Endpoints
    • Build Filters Based on Packets
    • Display Filter Syntax
    • Use Comparison Operators and Advanced Filters
    • Filter on Text Strings
    • Build Filters Based on Expressions
    • Watch for Common Display Filter Mistakes
    • Share Your Display Filters
  8. Module 8TCP/IP Communications and Resolutions Overview

    • TCP/IP Functionality
    • When Everything Goes Right
    • The Multi -Step Resolution Process
    • Resolution Helped Build the Packet
    • Where Faults Can Occur
    • Typical Causes of Slow Performance
  9. Module 9Analyze DNS Traffic

    • DNS Overview
    • DNS Packet Structure
    • DNS Queries
    • Filter on DNS Traffic
    • Analyze Normal/Problem DNS Traffic
  10. Module 10Analyze ARP Traffic

    • ARP Overview
    • ARP Packet Structure
    • Filter on ARP Traffic
    • Analyze Normal/Problem ARP Traffic
  11. Module 11Analy ze Ipv4 Traffic

    • IP4 Overview
    • Ipv4 Packet Structure
    • Analyze Broadcast/Multicast Traffic
    • Filter o Ipv4 Traffic
    • IP Protocol Preferences
    • Analyze Normal/Problem IP Traffic
  12. Module 12Analyze ICMP Traffic

    • ICMP Overview
    • ICMP Packet Structure
    • Filter on ICMP Traffic
    • Analyze Normal/Problem ICMP Traffic
  13. Module 13Analyze UDP Traffic

    • UDP Overview
    • Watch for Service Refusals
    • UDP Packet Structure
    • Filter on UDP Traffic
    • Follow UDP Streams to Reassemble Data
    • Analyze Normal/Problem UDP Traffic
  14. Module 14Analyze TCP Protocol

    • TCP Overview
    • Watch for Service Refusals
    • UDP Packet Structure
    • Filter on UDP Traffic
    • Follow UDP Streams to Reassemble Data
    • Analyze Normal/Problem UDP Traffic
  15. Module 15Analyze TCP Protocol

    • TCP Overview
    • The TCP Connection Process
    • TCP Handshake Problem
    • Watch Service Refusals
    • TCP Packet Structure
    • The TCP Sequencing/Acknowledgement Process
    • Packet Loss Detection in Wireshark
    • Fast Recovery/Fast Retransmission Detection in Wireshark
    • Retransmission Detection in Wireshark
    • Out -of-Order Segment Detection in Wireshark
    • Selective Acknowledgment (SAC K)
    • Window Scaling
    • Window Size Issue: Receive Buffer Problem
    • Window Size Issue: Unequal Window Size Beliefs
    • TCP Sliding Window Overview
    • Troubleshoot TCP Quickly with Expert Info
    • Filter on TCP Traffic and TCP Problems
    • Properly Set TCP Preferences
    • Follow TC P Streams to Reassemble Data 16: Examine Advanced Trace File
    • Statistics
    • Build Advanced IO Graphs
    • Graph Round Trip Times
    • Graph TCP Throughput
    • Find Problems Using TCP Time-Sequence Graphs
  16. Module 16Graph Traffic Characteristics

    • Advanced I/O Graphing
    • Graph Round Trip Times
    • Graph TCP Throughput
    • Find Problems Using TCP Time Sequence Graphs
  17. Module 17Analyze HTTP Traffic

    • HTTP Overview
    • HTTP Packet Structure
    • Filter on HTTP Traffic
    • Reassembling HTTP Objects
    • HTTP Statistics
    • HTTP Response Time
    • Overview of HTTP/2
    • HTTP/2 Analysis Fundamentals
    • HTTP/2 Frame Format
    • Analyze Normal/Problem HTTP Traffic
  18. Module 18Analyze TLS - Encrypted Traffic (HTTPS)

    • Analyze HTTPS Traffic
    • Encrypted Alerts
    • Decryption Steps
    • Filter on SSL
  19. Module 19Review Your Key Troubleshooting Steps

    • Baseline “Normal Traffic
    • Use Color
    • Look Who’s Talking: Examine conversations and Endpoints
    • Focus by Filtering
    • Create Basic IO Graphs
    • Examine Delta Time Values
    • Examine the Expert System
    • Follow the Streams
    • Graph Bandwidth Use: Round Trip Time, and TCP Time/Sequence Information
    • Watch Refusals and Redirections
    • Introduction to Troubleshooting
    • TCP/IP Networks with Wireshark

Download the full outline (PDF)

Before you attend

Before attending this course, students must have attended: CompTIA Network+ ntrol Protocol (TCP) traffic Analyze normal/abnormal Hypertext Transport Protocol (HTTP/HTTPS) traffic

Run this for a team

Private cohorts run on your dates, at your site or online, with the labs pointed at your environment. Above about four people it usually costs less than buying seats.

Or call 916-920-1700, weekdays 8 to 5 Pacific.

More other classes

See all
Ansible
Other ISI-1549

Ansible

  • $2,695 per seat
Dates on request
Architecting on AWS
AWS AWS-03

Architecting on AWS

  • $2,025 per seat
Next: Oct 5–7 Confirmed to run

2 dates on the calendar