Skip to main contentSkip to main content
Room Banner
Back to all walkthroughs
Room Icon

Wireshark: The Basics

Premium room

Learn the basics of Wireshark and how to analyse protocols and PCAPs.

easy

60 min

202,052

User profile photo.
User profile photo.
User profile photo.

To access material, start machines and answer questions login.

Wireshark is an open-source, cross-platform network packet analyser tool capable of sniffing and investigating live traffic and inspecting packet captures (). It is commonly used as one of the best packet analysis tools. In this room, we will look at the basics of Wireshark and use it to perform fundamental packet analysis.

Learning Objectives

  • Navigate and configure Wireshark
  • Inspect packets and discover information from the different layers of /IP
  • Apply display filters

Prerequisites

Environment Setup

Press the Start Lab Machine button below to start the lab machine.

The machine will start in Split-Screen view. If it is not visible, use the blue Show Split View button at the top of the page.

There are two capture files given in the . You can use the http1.pcapng file to simulate the actions shown in the screenshots. Please note that you need to use the Exercise.pcapng file to answer the questions.

Answer the questions below

Which file is used to simulate the screenshots?

Which file is used to answer the questions?