Reference no: EM133847134
Assignment: Wire Shark Lab Analysis
Part A: Using the network capture is saved in a file titled ND1_HandsOn1.pcapng.
1. Describe the main fields in a typical output of a Wireshark capture.
2. Briefly describe the network activities that transpired during the capture session.
3. Describe how you would filter the captured packets leaving only the two protocols that are of interest: TCP and UDP.
4. Describe the UDP network traffic activities. Get the instant assignment help.
5. Describe the TCP network traffic activities.
Part B: Using the network packet capture is saved in a file titled ND1_HandsOn2.pcapng.
1. Briefly describe the network activities that transpired during the capture session.
2. Describe how you would filter the captured packets leaving only the TCP protocol.
3. What is the client computer trying to achieve? Explain.
Part C: Using the network packet capture activities saved in a file titled ND1_HandsOn3.pcap.
1. What is (are) the service(s) and/or protocol(s) used during the session?
2. What are the IP address and MAC address of each of the devices?
3. What is the name of the file that is being exfiltrated?
4. Will you be able to extract and examine the entire content of the file? How?