Wireshark Tutorial // Lesson 6 // Name Resolution

Поделиться
HTML-код
  • Опубликовано: 11 июн 2024
  • In this tutorial we will look at how we can use the name resolution features to work with DNS or manually configured names.
    Download the sample trace file here:
    www.cloudshark.org/captures/6...
    (Select Export | Download to pull the trace down locally)
    Please smash the like button to let me know if you enjoy this content!
    == More On-Demand Training from Chris ==
    ▶Getting Started with Wireshark - bit.ly/udemywireshark
    ▶Getting Started with Nmap - bit.ly/udemynmap
    == Live Wireshark Training ==
    ▶TCP/IP Deep Dive Analysis with Wireshark - bit.ly/virtualwireshark
    == Private Wireshark Training ==
    Let's get in touch - packetpioneer.com/product/pri...
    Chapters in video:
    0:00 Introduction to Naming
    1:07 Resolving MAC and TCP ports
    2:56 Resolving IP and IPv6 Addresses
    6:10 Manually configuring host names

Комментарии • 50

  • @Rafael-zc6xy
    @Rafael-zc6xy 2 года назад +17

    This channel is gold! I just have to finish the Sharkfest and Quic playlists, the others I watched last week =).

    • @ChrisGreer
      @ChrisGreer  2 года назад +5

      Thanks for the comment Rafael! Please share with others who may enjoy the content too - that is a huge help.

  • @alaudet
    @alaudet 2 года назад +6

    This series hits all the right notes and you can tell the author has probably suffered watching many bad videos. The content is excellent and he has a great grasp of the subject. Short intros, concise video with no extra filler. I have been using Wireshark sporadically for years, but never long enough to really get comfortable. I like that he spends a lot of time on setup. Too many videos dive into packet analysis but the environment needs to be customized to make the most of the capture. I like that he takes the time to go through this customization, offering excellent tips that you can use right away. By far the best tutorial on Wireshark I have seen. Great job and very much enjoying the series.

    • @ChrisGreer
      @ChrisGreer  2 года назад

      Thanks for the feedback! Really glad you are enjoying the series!

  • @denovo3949
    @denovo3949 2 месяца назад

    The Wireshark guru! It's so nice to have certain go to teachers on RUclips who are the best at what they do in the area they reside in. Thanks as always.

    • @ChrisGreer
      @ChrisGreer  2 месяца назад

      Thank you for the comment!

  • @kso35
    @kso35 Год назад +1

    YOUR WS VIDEOS ARE LIFE SAVING!!! I am able to understand, not get bored, and learn so much!! 💯💯💯💯💯💯💯

    • @ChrisGreer
      @ChrisGreer  Год назад

      Thank you! Glad you like them!

  • @Black_Swan68761
    @Black_Swan68761 2 года назад +1

    Thank you so much, Chris, for sharing this video. Since i've subscribed your channel i've gained so much information.
    Great work, Chris!!!

  • @dm3035
    @dm3035 Год назад

    Great approach - short videos TO THE POINT - I am learning THE PRACTICAL WAY Thanks 🙏

  • @marcusdige130
    @marcusdige130 8 месяцев назад

    Dude, thank you so much for your video. You have really helped me prepare for my test that i have in wireshark. Your settings make life so much easier.

  • @StankBrewing
    @StankBrewing 3 месяца назад

    Chris, thank you for your lessons🤝

  • @avjyots2601
    @avjyots2601 Год назад

    THis is just more than a Masterclass it's a god class

  • @jjames7206
    @jjames7206 2 года назад +1

    Thanks Chris! Great Tip

  • @bilalbashir
    @bilalbashir 2 года назад +1

    Great videos Chris God bless you
    Your videos really helped me in troubleshooting

  • @sam10854
    @sam10854 Год назад

    Best channel ❤ Learning a lot from you

  • @donkanaillesc5714
    @donkanaillesc5714 2 года назад +1

    big thanks to you for making these videos.

  • @vyasG
    @vyasG 2 года назад

    Great Video. Thank you! Very useful features.

  • @sammo7877
    @sammo7877 2 года назад +1

    Epic as usual

  • @vq8gef32
    @vq8gef32 Год назад

    Thank you Chris. amazing contents.

  • @joerockhead7246
    @joerockhead7246 2 года назад

    Thanks, Chris

  • @TheodorosSkouras
    @TheodorosSkouras 2 года назад

    Great videos Chris!!

  • @rbsouza190
    @rbsouza190 2 года назад

    Another great video!!! Keep it up

  • @wagnerj01
    @wagnerj01 Год назад

    Thanks for this video

  • @sandywilson8169
    @sandywilson8169 Год назад

    Question, when download the example capture, what's diff in commented vs original files ?
    And which one do I want when following along ?

  • @andygerard228
    @andygerard228 Год назад

    Bro this is Awsome, I owe you lunch if you're ever in Debary FL.

    • @ChrisGreer
      @ChrisGreer  Год назад

      I WILL take you up on that!! 😆

  • @magotelecom
    @magotelecom Год назад

    Thanks for the videos Chris. Towards the end of the lecture, my View->Reload as File Format/Capture and Reload buttons are greyed out. What could be the reason pse? I am running Ubuntu desktop on a raspberry pi 400, where I intsalled wireshark.

  • @Uncle_Buzz
    @Uncle_Buzz 3 месяца назад

    7:00 - seems like this could be used to spoof resolved names?

  • @Snagalakshmibutti
    @Snagalakshmibutti 2 года назад

    Can you please tell me how one can extract the information from the signals that are captured from the monitor mode ...(protocol says IEEE 802.11)

  • @PakistanAlg
    @PakistanAlg 2 года назад +1

    hi chris ,can u please mention the display filter to view SYN and SYN/ACK at the same time.
    thanks

    • @ChrisGreer
      @ChrisGreer  2 года назад +3

      Sure - tcp.flags.syn==1
      That will show both the syn and syn/ack

  • @marwit2928
    @marwit2928 4 месяца назад

    BTW, anyone looking for the "Name Resolution Block", on the video here it is at the very end of the block list. However, in the newer version of WireShark it appears at the very top of the blocks. I saw mine on "Block 3" which is in other words towards the beginning/header!

    • @ChrisGreer
      @ChrisGreer  3 месяца назад +1

      Hey @marwit2928 - thanks for the comment!

    • @marwit2928
      @marwit2928 3 месяца назад

      Absolutely Boss! My little comment is nothing compared to the great contributions of @@ChrisGreer!!! Thank YOU!

  • @dopy8418
    @dopy8418 2 года назад

    Does Wireshark use the cached DNS entries of windows or does it always have to a do a DNS query even if it's been done before ?

    • @ChrisGreer
      @ChrisGreer  2 года назад

      Hey that's a good question. In the documentation - www.wireshark.org/docs/wsug_html_chunked/ChAdvNameResolutionSection.html it mentions that in addition to looking within the pcap and making active DNS queries, Wireshark can also use the local system hosts file. However I don't have much info on how that actually works, nor have I done much testing with it.

  • @paladin80lvl
    @paladin80lvl Год назад

    good cap litle boy

  • @RAZA-tm5yh
    @RAZA-tm5yh Месяц назад

    in my capturing the name resolution block is not coming what is the reason behind of this things

  • @harryparker4780
    @harryparker4780 6 месяцев назад

    so usful