Главная
Study mode:
on
1
Intro
2
Why do we capture packets?
3
Obtaining Network Traffic
4
Network Interface Cards
5
FreeBSD Packet Processing
6
FreeBSD Processing cont.
7
mbuf kernel structure
8
Linux Frame Processing
9
sk_buff kernel structure
10
Keeping Up?
11
Capture Mechanisms/Sockets
12
tcpdump tests, average
13
libpcap buffer
14
FreeBSD, packet drops netstat
15
Linux, packet drops ifconfig
16
tcpdump/libpcap drops
17
Reporting & Stats
18
graphing with gnuplot
19
Packets Per Second
20
Gigabit Line Rate for UDP
21
trafgen config files
22
BPF Filters - 3
23
Capture SYN
24
IP Options: RR Example
25
Capture HTTP GET Method
26
netsniff-ng: a quick look
27
netsniff-ng: writing to disk
28
netsniff-ng: Creating filters
29
tcpdump & libpcap
30
Analysis
Description:
Learn the fundamentals of traffic analysis through a pragmatic approach in this comprehensive conference talk. Explore packet capture techniques, network interface cards, and kernel structures in FreeBSD and Linux. Discover various capture mechanisms, including tcpdump and libpcap, and understand how to handle packet drops. Gain insights into reporting and statistics using gnuplot, and delve into BPF filters and IP options. Examine practical examples of capturing specific network traffic, such as SYN packets and HTTP GET methods. Investigate tools like netsniff-ng for advanced packet capture and analysis, and develop essential skills for effective network traffic analysis.

An Introduction to Traffic Analysis - A Pragmatic Approach

Add to list
0:00 / 0:00