Presentation is loading. Please wait.

Presentation is loading. Please wait.

Ethernet WireShark Utkarsh Mahajan Id: A1238. Download: Referance:

Similar presentations


Presentation on theme: "Ethernet WireShark Utkarsh Mahajan Id: A1238. Download: Referance:"— Presentation transcript:

1 Ethernet WireShark Utkarsh Mahajan Id: A1238

2 Download: http://www.wireshark.org/download.html Referance: http://en.wikipedia.org/wiki/Wireshark http://www.wireshark.org/download.html http://en.wikipedia.org/wiki/Wireshark

3 What is Wire shark? What is Wire shark? Wireshark is a free packet sniffer computer application. It is used for network troubleshooting, analysis, software and communications protocol development, and education. In May 2006 the project was renamed from Ethereal due to trademark issues.packet snifferapplication networkcommunications protocol

4 Features: Wireshark is software that "understands" the structure of different networking protocols. Thus, it is able to display the encapsulation and the fields along with their meanings of different packets specified by different networking protocols. Wireshark uses pcap to capture packets, so it can only capture the packets on the networks supported by pcap. 1.Data can be captured "from the wire" from a live network connection or read from a file that records the already-captured packets. 2.Live data can be read from a number of types of network, including Ethernet, IEEE 802.11, PPP, and loopback. 3.Captured network data can be browsed via a GUI, or via the terminal (command line) version of the utility, tshark. 4.Captured files can be programmatically edited or converted via command-line switches to the "editcap" program. 5.Display filters can also be used to selectively highlight and color packet summary information. 6.Data display can be refined using a display filter. 7.Hundreds of protocols can be dissected. EthernetIEEE 802.11PPPloopbackGUIcommand lineprotocols

5 Start from capture

6 Settings

7 After start

8 Sort by source

9 Packet details pane

10 Filters

11 Some practice problems and the solution of that problems.

12 What is the 48-bit Ethernet address of your computer? Ans: 00 1F 3A 01 18 60

13 2.What is the 48-bit destination address in the Ethernet frame? Ans: 00:1c:10:52:fa:1f

14 3.Give the hexadecimal value for the two-byte Frame type field. Ans: 0x0800

15 4. What is the size of Ethernet packet captured? Ans: 1484 bytes

16 5. How many bytes are the IP header? Ans: 20 bytes

17 What is the value of the Ethernet source address? Is this the address of your computer, or of http://www.svuca.edu What device has this as its Ethernet address? Ans: 00:1f:e1:12:07:a9http://www.svuca.edu

18 This is not the address of my computer and also not the address Of http://www.svuca.edu/home/index.php.http://www.svuca.edu/home/index.php This is the Ethernet address of the router to which PC was connected.

19 What is the destination address in the Ethernet frame? Ans: ff:ff:ff:ff:ff:ff


Download ppt "Ethernet WireShark Utkarsh Mahajan Id: A1238. Download: Referance:"

Similar presentations


Ads by Google