ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: Re: [Wireshark-users] Need Help.

From: Martin Visser <martinvisser99@xxxxxxxxx>
Date: Fri, 27 Aug 2010 09:16:56 +1000
Wireshark is simply an intelligent microscope for your network. Not only does it show show details (packets and bytes), it also labels many of the features for you. It can decode a lot of protocols and even some encrypted protocols, like SSL or WEP (provided you have the keys).

It might well be that you won't be able to decrypt the VPN traffic in wireshark. However I expect you might be able to tell a lot from things like setup and teaddown sequences (for instance ISAKMP) which do have a lot of "plain-text" information. Also if the protocols runs over TCP you might see retransmissions that are say caused by firewall or congestion issues.

Like a microscope in the hands of a biologist, what you see still requires interpretation. Hopefully Wireshark might help you do that.


Regards, Martin

MartinVisser99@xxxxxxxxx


On Thu, Aug 26, 2010 at 12:49 AM, <Jayanta.Mukherjee@xxxxxxxxxxxxx> wrote:

All.

 

How much the below highlighted statement is true ? How can I get the list of features/advantages that wireshark provides ?

Thanks for the reply in advance.

 

Hi,

 

We are installing this software on request of XXXX network team because they want to make sure that the VPN itself is getting disconnected or not, which as per our observation is not getting disconnected. The sniffer software is not going to tell anything more, it will not be able to provide application traffic information (because it will be encrypted). So we do not think that is required in this case, which I told clearly in the call as well, so it is basically to satisfy them, because they are not seeing your desktop which we can. I hope this clears your doubt.

Regards,

 

This e-mail and any files transmitted with it are for the sole use of the intended recipient(s) and may contain confidential and privileged information.
If you are not the intended recipient, please contact the sender by reply e-mail and destroy all copies of the original message.
Any unauthorised review, use, disclosure, dissemination, forwarding, printing or copying of this email or any action taken in reliance on this e-mail is strictly
prohibited and may be unlawful.

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe