Using CloudShark for Packet Analysis

Although Wireshark is a powerful, versatile tool, there are times when you may need to involve your team in a packet analysis exercise. One site that makes it easy to share your packet captures with co-workers is CloudShark (CS). While CS does not have as many features as Wireshark, you can still execute a number of different packet analysis tasks with it.

In this chapter, we'll discover CS, a browser-based solution that offers several of the same benefits as Wireshark. You'll learn that, in addition to the basic tasks you can do with Wireshark, you can create an account and perform more advanced tasks such as uploading and sharing captures.

So that you can get the full benefit of CS, we'll step through basic packet capture analysis, such as applying filters to narrow the scope and creating graphs to provide a visual representation of the data. We'll look at various analysis tools, such as VoIP calls, RTP streams, and HTTP analysis. Finally, so that you continue to improve your packet analysis skills, we will take a look at the many online repositories for sample captures.

This chapter will address all of this by covering the following:

  • Diving into an overview of CS
  • Sharing captures in CS
  • Outlining the various filters and graphs
  • Evaluating the different analysis tools
  • Discovering where to find sample captures
..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.119.111.9