Is your network slow? Are your users complaining? Disconnections? IP telephony problems? Video freezes? Network analysis is the process of isolating these problems and fixing them, and Wireshark has long been the most popular network analyser for achieving this goal. Based on hundreds of solved cases, this book provides practical recipes for effective Wireshark network analysis to analyse and troubleshoot your network.
Network Analysis using Wireshark Cookbook is a troubleshooting guide for beginning to intermediate network admins containing detailed step-by-step recipes, many real life war stories (add a lot of entertainment value) and many tips and tricks of the trade. The author insists that common sense is always the most important tool you need and some of the tips given are just common sense (like don’t use techical terms when talking to users). Still Wireshark is an awesome tool with a lot of complex and useful features. This book truly does justice to them.
As a reader it is suggested to have basic networking knowledge, otherwise you might not enjoy this book. However, some tutorials do give detailed explanations of protocols and other relevant topics. Also at the end of some sections links to relevant manual pages and other informative websites can be found. Unfortunately maybe about 90 % of the instructions (for instance installing) are heavily Windows oriented. So as a Linux or Mac user, you may have to do a bit of extra Googling.
On a positive note the usage of screenshots is simply excellent. I suspect that a special tool was used to annotate and manipulate the images.
I am not sure where the captures in the cookbook come from. Maybe the author created them by himself either on the job or for the purpose of this book. Or maybe the captures may have been downloaded from special websites. Or a combination of all the above. The fact remains that you cannot download them from the book’s website, which is a shame.
“Network Analysis using Wireshark Cookbook” is a great networking book for the hands-on network admin with a bit too much focus on Windows in my humble opinion.
This is definitely a great book to dive in the Wireshark world. It is a good reference for who uses Wireshark for the first time and at the same time it is a good cookbook book for network administrators who often uses the packet analyzer.
The book starts of with a general introduction to the traffic analysis and Wireshark in general. The next two section introduce the reader to BPF and display filter, and offer a wide set of practical examples. Then the book dives in the analysis tools in Wireshark and describes what they do and how they work. Once the reader had built up enough knowledge on the different tools, the book goes trough the different stack layers illustrating how to put together filters and tools to solve common network issues on the different layers.
One of nice things about this book is that it's self contained, you can read this book without having to look around for other network reference (e.g. protocol headers, SSL handshake, HTTP status code). It's nice to have everything in the same place, especially when you are dealing with the tons of standards and acronyms of the networking world.
I enjoyed reading this book and I highly recommended it both to people that are approaching Wireshark for the first time and for people that work with networks and are looking for a great and practical cookbook.
Many Thanks to Packt Publishing for sharing with me this book. Wireshark is one of the most important tools used for troubleshooting complicated infrastructure issues.
Though I am only half way done through this book, and I feel it will take more time to understand the concepts in depth. I still feel the author has done complete justice to the book, by starting from scratch and mastering the tool.
I think one who has not at all heard about this product can go through it in a phase by phase approach and get proficient in this product.