第67页 Chapter 5
回牛 (实事求是)
- 章节名:Chapter 5
- 页码:第67页
Endpoint and conversation statistics is helpful when you are checking how many connections the host has set up. You can also browse the packet statistics using protocol hierarchy statistics. With name resolution, you can resolve names in different layers. MAC name resolution will convert Layer 2 MAC addresses into Layer 3 IP addresses. Network name resolution will convert Layer 3 IP addresses into DNS records. Transport name resolution will convert a port number into the responsive protocol that using the port. Protocol dissectors are the translator between the raw data flowing across the wire and Wireshark. It will break down a protocol into various sections. You can change the dissector by right clicking the packet you want to change. The dissector source code could be found in epan/dissectors directory in Wireshark's source code. Following TCP Stream is another useful feature that can help you on tracking certain conversations of some protocols. Package length statistics can help you on knowing the current usage status of the network. Graphing is another useful feature that could help you on displaying the statistics. You can use several graphing techniques, like IO Graph, Round-Trip Time Graph and Flow Graph. You can also use expert info to see if the connection states are correct.
回牛对本书的所有笔记 · · · · · ·
-
第35页 Chapter 3
This chapter talks about how to install Wireshark and some Wireshark features, like pac...
-
第47页 Chapter 4
Capture files could be saved as .pcap, which is more portable for packet analysis tools...
-
第67页 Chapter 5
说明 · · · · · ·
表示其中内容是对原文的摘抄