Wireshark mailing list archives

Re: Need Help.


From: Martin Visser <martinvisser99 () gmail com>
Date: Fri, 27 Aug 2010 09:16:56 +1000

Wireshark is simply an intelligent microscope for your network. Not only
does it show show details (packets and bytes), it also labels many of the
features for you. It can decode a lot of protocols and even some encrypted
protocols, like SSL or WEP (provided you have the keys).

It might well be that you won't be able to decrypt the VPN traffic in
wireshark. However I expect you might be able to tell a lot from things like
setup and teaddown sequences (for instance ISAKMP) which do have a lot of
"plain-text" information. Also if the protocols runs over TCP you might see
retransmissions that are say caused by firewall or congestion issues.

Like a microscope in the hands of a biologist, what you see still requires
interpretation. Hopefully Wireshark might help you do that.


Regards, Martin

MartinVisser99 () gmail com


On Thu, Aug 26, 2010 at 12:49 AM, <Jayanta.Mukherjee () cognizant com> wrote:

 All.



How much the below highlighted statement is true ? How can I get the list
of features/advantages that wireshark provides ?

Thanks for the reply in advance.



Hi,



We are installing this software on request of XXXX network team because
they want to make sure that the VPN itself is getting disconnected or not,
which as per our observation is not getting disconnected. The sniffer
software is not going to tell anything more, it will not be able to provide
application traffic information (because it will be encrypted). So we do
not think that is required in this case, which I told clearly in the call as
well, so it is basically to satisfy them, because they are not seeing your
desktop which we can. I hope this clears your doubt.

Regards,


 This e-mail and any files transmitted with it are for the sole use of the
intended recipient(s) and may contain confidential and privileged
information.
If you are not the intended recipient, please contact the sender by reply
e-mail and destroy all copies of the original message.
Any unauthorised review, use, disclosure, dissemination, forwarding,
printing or copying of this email or any action taken in reliance on this
e-mail is strictly
prohibited and may be unlawful.

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request () wireshark org
?subject=unsubscribe

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe

Current thread: