From the course: Protecting Your Network with Open Source Software

Unlock the full course today

Join today to access over 22,500 courses taught by industry experts or purchase this course individually.

Packet capturing with Wireshark

Packet capturing with Wireshark

From the course: Protecting Your Network with Open Source Software

Start my 1-month free trial

Packet capturing with Wireshark

- [Narrator] Wireshark is one of the most well-known packet or protocol analysis software. This type of software is also called packet sniffer because it collects and inspect packets like dogs sniffing for evidence in a crime scene. In this lesson, our goal is to observe three-way handshaking, using Wireshark. Transmission control protocol or TCP, is a connection oriented protocol that ensures packets are error-free, and in sequence on the receiving side. For TCP to establish a reliable connection, it has to go through this process called three-way handshaking. The process consists of three steps, which is why it's called three-way handshaking. The first one is SYN or synchronize. The second one is SYN/ACK or synchronize and acknowledge. And finally ACK or acknowledge. Here is a diagram that shows how three-way handshaking occurs. When starting your Wireshark instance, remember that you're running it as root. The…

Contents