PCAP
How difficult did you find this challenge?
Task 1: How to filter for packets coming from 192.168.10.10/25 and sent to Aruba devices in WireShark?
Task 2: Which display filter is used to display all DHCP traffic?
Task 3: How do you quickly spot large gaps in time between packets in a trace file containing 10,000 packets?
Choose the correct answer:
1. Set the Time column to Seconds Since Epoch and scroll through the trace file
2. Open and examine the Notes section of Wireshark's Expert infos window
3. Set the Time column to Seconds Since Previously Displayed Packet and sort the Time column
Task 4: Which of these filters can be used as either a capture or display filter?
Choose the correct answer:
1. Dns
2. Udp
3. Dhcp
Task 5: What is the sensible information involved in the pcap file?