Wireshark for Basic Network Security Analysis

Coursera Project Network
Learn how to troubleshoot with Wireshark, capture Traffic and analyze already captured Traffic. Know how to use Display and Capture Filters.

Generate, Capture and analyze RADIUS, DNS, HTTP and Telnet unencrypted Traffic. Decrypt also the RADIUS encypted password.

Generate, Capture then analyze SSH and HTTPS encrypted Traffic. Decrypt HTTPS Traffic in Wireshark.

In this 1-hour 30-minutes long project-based course, you will learn how to use Wireshark to capture the Network Traffic you need and analyze it securely. You will have a better understanding of encrypted and unencrypted traffic and how to differentiate between them. You will dig deeply into unencrypted protocols such as RADIUS, HTTP, DNS and Telnet by generating the Traffic of each of them and capturing it yourself. Also you will generate, capture and look into secure and encrypted protocols such as HTTPS and SSH. Additionally, you will learn how to capture HTTPS Traffic and decrypt them by using a pre-master secret key. Note: This project works best for learners who are based in the North America region. We’re currently working on providing the same experience in other regions.

Network SecurityWiresharksecurityNetworking

  1. Using Wireshark and most of its functionalities: capturing some network traffic that is flowing through your machine now and analyzing captured network traffic by opening a stored capture file.

  2. Generating and capturing RADIUS Traffic, analyzing and viewing it in Wireshark. Knowing what the RADIUS Architecture consists of and decrypting the encrypted password using Wireshark.

  3. Knowing the basics about HTTP, and knowing the difference between Wireshark’s Filters. Connecting to an HTTP Server and initiate a Basic HTTP Authentication and capturing its Traffic on Wireshark.

  4. Initiating an HTTP Form-based authentication, capturing it in Wireshark and analyzing it so you can see the username and password clearly. Also Capturing DNS Traffic.

  5. Knowing how Telnet works, starting a Telnet Session with a remote Device using Powershell, capturing its traffic in Wireshark and analyzing it from the Security perspective.

  6. Opening a SSH Session, capturing the traffic and comparing it with the Telnet's. Capturing traffic based on the host and how to see different conversations that have happened in a certain Capture.

  7. Generating and capturing HTTPS Traffic, also decrypting captured HTTPS Traffic in Wireshark.

