Autoplay
Autocomplete
Previous Lesson
Complete and Continue
Official Wireshark Certified Analyst - The Complete Course
Module 1 - Welcome to the WCA!
Lesson 1: The Wireshark Certified Analyst Program (1:28)
Lesson 2: Meet Chris! (2:02)
Lesson 3: WCA Course Overview (2:49)
Lesson 4: Where to get the lab files (2:18)
Your first lab! Find the slow application response. (6:48)
Module 2 - Install Wireshark
Lesson 1: How to install Wireshark (5:08)
Lesson 2: The Wireshark User Guide (1:30)
Lesson 3: What is a packet driver? (1:33)
Quiz: Installing Wireshark
Module 3 - Packet Capture
Module Overview (1:09)
Lesson 1: Where to capture traffic on a network (4:39)
Lesson 2: Capturing in a switched network - Taps and SPANs (12:14)
Demo: Configuring a monitor port (1:54)
Lesson 3: Capturing in a switched network - Endpoint and Inline devices (9:20)
Demo: Capturing on an endpoint (3:17)
Lesson 4: Multi-Point Captures (2:33)
Demo: Multi-Point Captures (6:08)
Lesson 5: Long-Term Captures (9:26)
Lesson 6: Capturing Traffic with Command Line Tools (7:49)
Lesson 7: Running command line tools from a shell (2:32)
Quiz: Packet Capture
Module 4 - The Wireshark Interface
Lesson 1: The Wireshark Layout (6:27)
Lesson 2: Capture File Properties (5:05)
Lesson 3: Configuring a profile (12:11)
Lesson 4: The Time Column (6:17)
Lesson 5: Configuring Name Resolution (8:01)
Lesson 6: Working with Statistics - Conversations and Endpoints (6:09)
Lesson 7: Wireshark Generated Fields (3:43)
Lesson 8: Graphing Traffic with Wireshark (2:34)
Lesson 9: PCAP vs PCAPNG, what is the difference? (2:28)
Lesson 10: The Search Feature (2:43)
Quiz: The Wireshark Interface
Module 5 - Filtering Traffic
Module Overview (0:38)
Lab: Basic Display Filters (13:34)
Lesson 1: Capture Filters vs Display Filters (8:02)
Lesson 2: The Anatomy of a Display Filter (2:47)
Lesson 3: The Top Five Wireshark Filters (3:01)
Lesson 4: Special Operators (7:11)
Lesson 5: Combining Display Filters (5:51)
Lesson 6: Right-Click Filtering (4:55)
Lesson 7: Creating Filter Buttons (4:08)
Lesson 8: Removing some traffic, analyzing the rest (9:52)
Lab: TryHackMe - Wireshark Filters (3:43)
Quiz - Filtering Traffic
Module 6 - Ethernet
Lesson 1: The Ethernet Frame (8:45)
Lesson 2: Where is the FCS? (3:52)
Lesson 3: Unicast vs Broadcast vs Multicast (9:28)
Lesson 4: VLAN Tagging and Ethernet (6:05)
Lesson 5: Ethernet Re-Encapsulation (4:20)
Lab: Follow a packet through a network (5:57)
Quiz: Analyzing Ethernet
Module 7 - The ARP Protocol
Lesson 1: How ARP Works (7:58)
Lesson 2: Creating Filters for ARP Traffic (4:33)
Lab: Analyzing an ARP Scan (8:31)
Quiz: The ARP Protocol
Module 8 - IPv4 and IPv6
Lesson 1: Overview of IP (2:48)
Lesson 2: IP Address Ranges (3:36)
Lesson 3: Hands-On with the Internet Protocol (5:59)
Lesson 4: Network Address Translation and IPv4 (3:38)
Lab: Following a Packet Through a NAT (7:36)
Lesson 5: Using the TTL Field in Troubleshooting (6:38)
Lab: How far away is wireshark.org? (1:21)
Lesson 6: Using the IP ID Field in Troubleshooting (8:49)
Lesson 7: Understanding IP Fragmentation (7:05)
Lesson 8: intro Into IPv6 Headers and Address Ranges (7:33)
Quiz: IPv4 and IPv6 Analysis
Module 9 - The ICMP Protocol
Lesson 1: ICMP - The Messenger (1:20)
Lesson 2: The ICMP Message Types (4:38)
Lesson 3: The Top Three ICMP Messages for Troubleshooting (10:36)
Lab: What is ICMP Telling Us? (4:50)
Quiz: Analyzing ICMP
Module 10 - UDP and DHCP
Lesson 1: UDP Overview (2:26)
Lesson 2: The UDP Header (3:55)
Lesson 3: What Applications and Services Use UDP (3:57)
Lesson 4: UDP Filters and Stream Analysis (1:52)
Lesson 5: Intro to DHCP (3:45)
Lesson 6: DORA - Analyzing the Phases of DHCP (9:59)
Lesson 7: How Does a DHCP Relay Work? (2:25)
Lab: Analyzing a DHCP Relay (10:19)
Lesson 8: Renewing a DHCP Lease (2:46)
Lesson 9: When DHCP Fails - APIPA (5:33)
UDP/DHCP Module Overview (0:33)
Quiz: UDP and DHCP Analysis
Module 11 - DNS
Lesson 1: What is DNS? (1:17)
Lesson 2: How Does DNS Work? (4:22)
Lesson 3: Analyzing DNS Requests and Response Times (11:13)
Lesson 4: Common DNS Record Types (5:25)
Lab: What happened here? (3:34)
Lesson 5: Finding When the User Connects to an Application (7:37)
DNS Review (0:48)
Quiz: Analyzing DNS
Module 12 - Intro To TCP
Lesson 1: The Transmission Control Protocol (2:05)
Lesson 2: Analyzing the TCP Handshake (20:17)
Lab: Capturing the TCP Handshake (2:39)
Lesson 3: Sequence and Acknowledgement Numbers (12:40)
Lab: More Practice with Seq and Ack Numbers (9:15)
Lesson 4: Understanding TCP Options (7:58)
Lab: Analyzing Multi-Point Captures (9:30)
Lesson 5: MSS vs MTU, What's the Difference? (3:01)
Lesson 6: Tearing Down TCP Connections - FINs and Resets (13:05)
Lab: Lots of Resets - What's going on? (6:11)
TCP Summary (0:47)
Quiz: Intro to TCP
Module 13 - TCP Next Steps
Module Overview: What are "Next Steps"? (0:44)
Lesson 1: TCP Theory - Retransmissions (9:59)
Lab: Hands-On with Retransmissions (22:39)
Lab: How many packets went missing? (3:59)
Lab: Where is the packet loss? (13:17)
Lesson 2: TCP Theory - The Receive Window (11:53)
Lab: The Dreaded "TCP Window Full" (8:59)
Lab: TCP Zero Windows (6:54)
Lesson 3: Are these packets too big? TCP Segmentation (2:57)
Lesson 4: Advanced TCP Filters, Timestamps, Streams and Analysis Flags (15:37)
Lesson 5: Follow TCP Stream (3:14)
Lesson 6: Export Objects (2:28)
Lesson 7: Visualizing TCP with Stream Graphs (7:01)
Module Summary (1:31)
Quiz: TCP Next Steps
Module 14 - Putting It All Together
Module Overview (0:40)
...just a note (2:12)
Start to finish - a client connects to a web app (9:09)
Scenario 1: Slow File Transfer (14:48)
Scenario 2: Slow Application Connection (19:42)
Scenario 3: Internet Connectivity Issues (9:08)
Module Summary (0:21)
Module 15 - Becoming a Wireshark Certified Analyst!
How to register for the WCA (2:13)
Where to go from here - labs, practice, and more hands-on (1:25)
How do you know if you are ready? (0:59)
Let's stay in touch. Thank you! (1:16)
Quiz: Analyzing Ethernet
Lesson content locked
If you're already enrolled,
you'll need to login
.
Enroll in Course to Unlock