Analyze the packet captures provided by Wireshark by doing the following:
Go to the
Wireshark Sample Captures
site and download the following:
wpa-Induction.pcap.gz Wi-Fi 802.11 WPA traffic
wpa-eap-tls.pcap.gz WiFi 802.11 WPA-EAP/Rekey sample
nb6-hotspot.pcap Someone connecting to SFR’s wireless community network
ciscowl.pcap.gz (libpcap) Cisco Wireless LAN Context Control Protocol (WLCCP) version 0x0
wap_google.pcap contains two WSP request-response dialogs
Countermeasures to take to secure the network from any threat
Write a 2- to 3-page memo to management as a network security specialist, and ensure you do the following:
Explain how to distinguish hostile packet data from normal packet data.
Explain how to recognize any attack signatures in the packets you analyze.
Provide a rationale for ranking the packets as you did.