Understanding the phases of packet analysis

Regardless of the software, there are four main phases of packet analysis: gather, decode, display, and analyze, as shown in the following diagram:

Phases of packet analysis

The first step in packet analysis is to obtain network traffic in some way. The following steps go through the gather process of packet analysis, which involves capturing the network traffic. We'll start with the first step, Gather, where we collect the data from the network.

Get Learn Wireshark - Fundamentals of Wireshark now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.