With the advent of various latest emerging and complex technologies, traffic capture and analysis play an integral part in the overall IT operation. This book outlines the availability of a rich set of advanced features and capabilities of the Wireshark tool to capture and analyze traffic from the modern network-based advanced technologies. Wireshark is currently the de-facto swiss army knife for IT operational activities involving traffic analysis. This open-source tool is available as CLI or GUI for the users to capture using different modes and leverage the community developed and integrated features such as filter based analysis or traffic flow graph view. To help the IT and Cloud professionals gain packet analysis knowledge, this book is organized in a way that we start żeby sprucing the basics of the Wireshark tool followed by capturing and analyzing secured application traffic such as SecureDNS, HTTPS, IPSec. You'll drill down in the control plane and data plane capture and analysis of wireless technology traffic such as 802.11 which is the common access technology used currently along with other technology such as Bluetooth. Also, the book will show you ways to identify network attacks, malware, covert communications, security incident post mortems and ways to prevent the same. The book further explains the capture and analysis of secure multimedia traffic which constitutes around 70% of the overall internet traffic. With Wireshark for Network Forensic you'll be well versed with cloud and cloud-native architecture-based traffic capture in Kubernetes, Docker-based, AWS and GCP environments. What You'll Learn Review Wireshark analysis and network forensics Study traffic capture and its analytics from mobile devices Capture and analyze various access technology traffic Capture and analyze cloud and cloud-native traffic Write your own dissector for any new or proprietary packet formats Capture secured application traffic for analysis Who This Book Is For IT Professionals, Cloud Architects, Infrastructure Administrators, and Network/Cloud Operators
Opinie i recenzje użytkowników
Dodaj opinie lub recenzję dla Wireshark for Network Forensics. Twój komentarz zostanie wyświetlony po moderacji.