Reference no: EM131152988
Lab- Performing Packet Capture and Traffic Analysis
Overview
In this lab, you used common applications to generate traffic and transfer files between the machines in this lab. You captured data using Wireshark and reviewed the captured traffic at the packet level, and then you used NetWitness Investigator, a free tool that provides security practitioners with a means of analyzing a complete packet capture, to review the same traffic at a consolidated level.
Lab Assessment Questions & Answers
1. Why would a network administrator use Wireshark and NetWitness Investigator together?
2. What was the IP address for LanSwitch1?
3. When the 172.16.8.5 IP host responded to the ICMP echo-requests, how many ICMP echo-reply packets were sent back to the vWorkstation?
4. What was the terminal password for LanSwitch 1 and LanSwitch 2?
5. When using SSH to remotely access a Cisco router, can you see the terminal password? Why or why not?
6. What were the Destination IP addresses discovered by the NetWitness Investigator analysis?
7. Are packet-capturing tools like Wireshark less dangerous on switched LANs?
Explain what is the purpose of the business impact analysis
: What is the purpose of the business impact analysis (BIA)? What is the difference between a disaster recovery plan (DRP) and a business continuity plan (BCP)?
|
Evidence to doubt the distributor reported average
: One of your distributors reports an average of 175 sales per day. You suspect that the average is different from 175, so you select 42 days and determine the number of sales each day. The sample mean is 166 with a standard deviation of 20 sales. A..
|
What major themes will be discussing in your critical review
: Please provide one paragraph that introduces the book. In your introduction, provide a brief discussion regarding what you thought about the book. You should end the introduction with an outline detailing what you intend to focus on in your book ..
|
Resting heart rates for a sample of individuals
: Assume the resting heart rates for a sample of individuals are normally distributed with a mean of 80 and a standard deviation of 5. Use the 68-95-99.7 rule to find the following quantities.
|
What was the ip address for lanswitchone
: What was the IP address for LanSwitch1? When the 172.16.8.5 IP host responded to the ICMP echo-requests, how many ICMP echo-reply packets were sent back to the vWorkstation?
|
Commands will yield the correct answer
: Energizer batteries are considered to be very reliable. Only 0.5% of batteries produced are defective. A purchaser would like to know the probability that more than 100 batteries are defective out of a shipment of 20,000 batteries. Which of the fo..
|
Explain the importance of situating a society cultural
: Explain how key social, cultural, and artistic contributions contribute to historical changes. Explain the importance of situating a society's cultural and artistic expressions within a historical context.
|
Name six policies you could enable in a windows domain
: Name six policies you could enable in a Windows Domain. What is the minimum password length enforced by the Password must meet complexity requirements policy?
|
Sales between the two seasons
: The mean sales during the winter months was $995 with a standard deviation of $100. At 0.02 significance level can we conclude there is a difference in sales between the two seasons? Find the p value
|