Skip to main contentSkip to main content
Room Banner
Back to all walkthroughs
Room Icon

Wireshark: The Basics

Premium room

Learn the basics of Wireshark and how to analyse protocols and PCAPs.

easy

60 min

205,852

User profile photo.
User profile photo.
User profile photo.

To access material, start machines and answer questions login.

Set up your virtual environment

To successfully complete this room, you'll need to set up your virtual environment. This involves starting the Target Machine, ensuring you're equipped with the necessary tools and access to tackle the challenges ahead.
Lab machine
Status:Off

Wireshark is an open-source, cross-platform network packet analyser tool capable of sniffing and investigating live traffic and inspecting packet captures (). It is commonly used as one of the best packet analysis tools. In this room, we will look at the basics of Wireshark and use it to perform fundamental packet analysis.

Learning Objectives

  • Navigate and configure Wireshark
  • Inspect packets and discover information from the different layers of /IP
  • Apply display filters

Prerequisites

Environment Setup

Press the Start Lab Machine button below to start the lab machine.

The machine will start in Split-Screen view. If it is not visible, use the blue Show Split View button at the top of the page.

There are two capture files given in the . You can use the http1.pcapng file to simulate the actions shown in the screenshots. Please note that you need to use the Exercise.pcapng file to answer the questions.

Answer the questions below

Which file is used to simulate the screenshots?

Which file is used to answer the questions?