Course Code: nettbswsadv
Duration: 21 hours
Prerequisites:

In-depth knowledge of the TCP/IP protocol stack, along with participating in the “Basic Network Troubleshooting using Wireshark” course or equivalent knowledge. The participants should bring their laptops with Wireshark software (free download from the site - www.wireshark.org)

Overview:

This course is a continuation of the "Basic Network Troubleshooting Using Wireshark" course, and comes to provide the participants with advanced capabilities for network troubleshooting. The course provides an in-depth knowledge of network behaviour and problems, along with the capabilities to isolate and solve security and advanced applications problems. The course is based on theory, class exercise and labs.

Course Outline:
  • Command-Line Tools and How to Use Them
  • TShark and Dumpcap Command-Line Tools
  • Capinfos Command-Line Tool
  • Editcap Command-Line Tool
  • Mergecap Command-Line Tool
  • Text2pcap Command-Line Tool
  • Split and Merge Trace Files
  • Advance usage of Capture and Display Filters
  • Writing advanced Capture filters scripts
  • Writing Advanced Display filters
  • Using triggered filters
  • The Expert System Advance Usage
  • Dealing with congestion - shattered windows and flooding
  • Baseline network communications
  • Unusual network communications
  • Vulnerabilities in the TCP/IP resolution process
  • Lab exercises and case studies
  • Who is talking?
  • Port Scans
  • Mutant Scans
  • IP Scans
  • Application Mapping
  • OS Fingerprinting
  • Lab exercises and case studies
  • VoIP Analysis
  • SIP analysis and troubleshooting
  • RTP, RTCP and media analysis
  • Creating VoIP filters and analysis profiles
  • Lab exercises and case studies
  • Applications Analysis and Troubleshooting
  • HTTP analysis and troubleshooting
  • FTP analysis and troubleshooting
  • DNS operation and troubleshooting
  • Video transmission analysys
  • Databases network-related problems
  • Network Security and Forensics Basics
  • Gather information – what to look for
  • Unusual traffic patterns
  • Complementary tools
  • Detecting Security Suspicious Patterns
  • MAC and IP address spoofing
  • Attacks signatures and signature locations
  • ARP poisoning
  • Header and sequencing signatures
  • Attacks and exploits
  • TCP splicing and unusual traffic
  • DoS and DDoS Attacks
  • Protocol scans
  • maliciously malformed packets
  • Lab exercises and case studies
Sites Published:

United Arab Emirates - Advanced Network Troubleshooting Using Wireshark

Qatar - Advanced Network Troubleshooting Using Wireshark

Egypt - Advanced Network Troubleshooting Using Wireshark

Saudi Arabia - Advanced Network Troubleshooting Using Wireshark

South Africa - Advanced Network Troubleshooting Using Wireshark

Brasil - Solução de Problemas de rede Avançada usando o Wireshark

Canada - Advanced Network Troubleshooting Using Wireshark

中国 - Advanced Network Troubleshooting Using Wireshark

香港 - Advanced Network Troubleshooting Using Wireshark

澳門 - Advanced Network Troubleshooting Using Wireshark

台灣 - Advanced Network Troubleshooting Using Wireshark

USA - Advanced Network Troubleshooting Using Wireshark

Österreich - Advanced Network Troubleshooting Using Wireshark

Schweiz - Advanced Network Troubleshooting Using Wireshark

Deutschland - Advanced Network Troubleshooting Using Wireshark

Czech Republic - Advanced Network Troubleshooting Using Wireshark

Denmark - Advanced Network Troubleshooting Using Wireshark

Estonia - Advanced Network Troubleshooting Using Wireshark

Finland - Advanced Network Troubleshooting Using Wireshark

Greece - Advanced Network Troubleshooting Using Wireshark

Magyarország - Advanced Network Troubleshooting Using Wireshark

Ireland - Advanced Network Troubleshooting Using Wireshark

Luxembourg - Advanced Network Troubleshooting Using Wireshark

Latvia - Advanced Network Troubleshooting Using Wireshark

España - Solución de Problemas de Red Avanzada Mediante Wireshark

Italia - Advanced Network Troubleshooting Using Wireshark

Lithuania - Advanced Network Troubleshooting Using Wireshark

Nederland - Advanced Network Troubleshooting Using Wireshark

Norway - Advanced Network Troubleshooting Using Wireshark

Portugal - Solução de Problemas de rede Avançada usando o Wireshark

România - Advanced Network Troubleshooting Using Wireshark

Sverige - Advanced Network Troubleshooting Using Wireshark

Türkiye - Advanced Network Troubleshooting Using Wireshark

Malta - Advanced Network Troubleshooting Using Wireshark

Belgique - Advanced Network Troubleshooting Using Wireshark

France - Advanced Network Troubleshooting Using Wireshark

日本 - Advanced Network Troubleshooting Using Wireshark

Australia - Advanced Network Troubleshooting Using Wireshark

Malaysia - Advanced Network Troubleshooting Using Wireshark

New Zealand - Advanced Network Troubleshooting Using Wireshark

Philippines - Advanced Network Troubleshooting Using Wireshark

Singapore - Advanced Network Troubleshooting Using Wireshark

Thailand - Advanced Network Troubleshooting Using Wireshark

Vietnam - Advanced Network Troubleshooting Using Wireshark

India - Advanced Network Troubleshooting Using Wireshark

Argentina - Solución de Problemas de Red Avanzada Mediante Wireshark

Chile - Solución de Problemas de Red Avanzada Mediante Wireshark

Costa Rica - Solución de Problemas de Red Avanzada Mediante Wireshark

Ecuador - Solución de Problemas de Red Avanzada Mediante Wireshark

Guatemala - Solución de Problemas de Red Avanzada Mediante Wireshark

Colombia - Solución de Problemas de Red Avanzada Mediante Wireshark

México - Solución de Problemas de Red Avanzada Mediante Wireshark

Panama - Solución de Problemas de Red Avanzada Mediante Wireshark

Peru - Solución de Problemas de Red Avanzada Mediante Wireshark

Uruguay - Solución de Problemas de Red Avanzada Mediante Wireshark

Venezuela - Solución de Problemas de Red Avanzada Mediante Wireshark

Polska - Advanced Network Troubleshooting Using Wireshark

United Kingdom - Advanced Network Troubleshooting Using Wireshark

South Korea - Advanced Network Troubleshooting Using Wireshark

Pakistan - Advanced Network Troubleshooting Using Wireshark

Sri Lanka - Advanced Network Troubleshooting Using Wireshark

Bulgaria - Advanced Network Troubleshooting Using Wireshark

Bolivia - Solución de Problemas de Red Avanzada Mediante Wireshark

Indonesia - Advanced Network Troubleshooting Using Wireshark

Kazakhstan - Advanced Network Troubleshooting Using Wireshark

Moldova - Advanced Network Troubleshooting Using Wireshark

Morocco - Advanced Network Troubleshooting Using Wireshark

Tunisia - Advanced Network Troubleshooting Using Wireshark

Kuwait - Advanced Network Troubleshooting Using Wireshark

Oman - Advanced Network Troubleshooting Using Wireshark

Slovakia - Advanced Network Troubleshooting Using Wireshark

Kenya - Advanced Network Troubleshooting Using Wireshark

Nigeria - Advanced Network Troubleshooting Using Wireshark

Botswana - Advanced Network Troubleshooting Using Wireshark

Slovenia - Advanced Network Troubleshooting Using Wireshark

Croatia - Advanced Network Troubleshooting Using Wireshark

Serbia - Advanced Network Troubleshooting Using Wireshark

Bhutan - Advanced Network Troubleshooting Using Wireshark

Nepal - Advanced Network Troubleshooting Using Wireshark

Uzbekistan - Advanced Network Troubleshooting Using Wireshark