Wireshark for Network Forensics
Apress (Verlag)
978-1-4842-9000-2 (ISBN)
You'll start by reviewing the basics of Wireshark, and then examine the details of capturing and analyzing secured application traffic such as SecureDNS, HTTPS, and IPSec. You'll then look closely at the control plane and data plane capture, and study the analysis of wireless technology traffic such as 802.11, which is the common access technology currently used, along with Bluetooth. You'll also learn waysto identify network attacks, malware, covert communications, perform security incident post mortems, and ways to prevent the same.
The book further explains the capture and analysis of secure multimedia traffic, which constitutes around 70% of all overall internet traffic. Wireshark for Network Forensics provides a unique look at cloud and cloud-native architecture-based traffic capture in Kubernetes, Docker-based, AWS, and GCP environments.
What You'll Learn
Review Wireshark analysis and network forensics
Study traffic capture and its analytics from mobile devices
Analyze various access technology and cloud traffic
Write your own dissector for any new or proprietary packet formats
Capture secured application traffic for analysis
Who This Book Is For
IT Professionals, Cloud Architects, Infrastructure Administrators, and Network/Cloud Operators
Nagendra Kumar Nainar (CCIE#20987) is a Principal Engineer with Cisco Customer Experience(CX) Organization (Formerly TAC), focusing on Enterprise customers. He is the co-inventor of more than 130 patent applications in different technologies including Virtualization/Container technologies. He is the co-author of multiple Internet RFCs, various Internet drafts and IEEE papers. Nagendra also co-authored multiple technical books with leading publishers such as Cisco Press and Packt Publication. He is a guest lecturer in North Carolina State University and a speaker in different network forums. Ashish Panda (CCIE#33270) is a Senior Technical Leader with Cisco Systems Customer Experience CX Organization primarily focused on handling complex service provider network design and troubleshooting escalations. He has 19+ years of rich experience in network design, operation, and troubleshooting with various large enterprises and service provider networks (ISP, satellite,MPLS, 5G, and cloud) worldwide. He is a speaker at various Cisco internal and external events and is very active in the network industry standard bodies.
Ch1:Wireshark Primer.- Ch 2: Packet Capture and Analysis.- Ch 3: Capturing Secured Application for Analysis.- Ch 4: Wireless Packet Capture and Analysis.- Ch 5: Multimedia Capture and Analysis.- Ch 6:Cloud and Cloud-Native Traffic Capture.- Ch 7: Bluetooth Protocol Capture and Analysis.- Ch 8: Wireshark Analysis and Network Forensic. - Ch 9: Writing your own Dissector.
Erscheinungsdatum | 10.01.2023 |
---|---|
Zusatzinfo | 2 Illustrations, color; 223 Illustrations, black and white; XIX, 271 p. 225 illus., 2 illus. in color. |
Verlagsort | Berkley |
Sprache | englisch |
Maße | 178 x 254 mm |
Themenwelt | Informatik ► Netzwerke ► Sicherheit / Firewall |
Mathematik / Informatik ► Informatik ► Theorie / Studium | |
Schlagworte | Cloud and cloudnative wireshark capture • Multimedia capture • Wireshark • Wireshark capture filter • Wireshark decryption |
ISBN-10 | 1-4842-9000-3 / 1484290003 |
ISBN-13 | 978-1-4842-9000-2 / 9781484290002 |
Zustand | Neuware |
Haben Sie eine Frage zum Produkt? |
aus dem Bereich