In the following exercise, we'll be using capture from The Honeynet Project (www.honeynet.org) to help us understand packet analysis. To perform the parsing of Wireshark packets, observe the following steps:
- Go to https://www.honeynet.org/node/1220 and download the conference.pcapng file. Additionally, the following URL, https://honeynet.org/sites/default/files/conference.pcapng.gz, is a direct download link to the file.
- Once downloaded, open the conference.pcapng file using Wireshark; you should have the following view:
- A helpful feature of Wireshark is to auto-resolve IP addresses to ...