Author name: Andrew Walding

My short bio can be viewed here: https://www.evernote.com/l/AKglxPOzlV9E7LHKvPsGzgs-SY3McII8E24

Complaint: Why Don’t You Allow Employees to use Wireshark?

Check out these great references as well:   Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture  Let me begin with a little background.  At CellStream, and the Online School of Network Sciences, we have taught hundreds of Wireshark classes for general networking, voice networking, data center […]

Complaint: Why Don’t You Allow Employees to use Wireshark? Read More »

Real-life Wireless Wireshark Troubleshooting Example

Sometimes troubleshooting in Wireshark is easy-ish, you find a misbehaving protocol behavior or pattern or even a bad packet, sometimes it is tricky and takes a while to find something, and sometimes it is as clear as mud.  Check out these great references as well:   Our custom profiles repository for Wireshark  Our Udemy course on

Real-life Wireless Wireshark Troubleshooting Example Read More »

If I want to get into Networking, what should I learn?

I was recently (this was 2017) asked the question “If I want to get into Networking, what should I learn?” If you want to see the 2025 answer – click here. A great question because Telecommunications or Data Networking is really not a degree program at most universities, at least not at the undergraduate level.

If I want to get into Networking, what should I learn? Read More »

TLS Decryption in Wireshark Using Key Log Files in Windows, MAC, and Linux

Hi everyone!  Being able to decrypt the encrypted contents of packet captures is very important if you want to troubleshoot anything above Layer 4.  This is even more important today as the network is evolving to QUIC where everything is encrypted. Check out these great references as well:  Our custom profiles repository for Wireshark  Our

TLS Decryption in Wireshark Using Key Log Files in Windows, MAC, and Linux Read More »

Leveraging SSL and TLS Decryption in Wireshark

Check out these great references as well:  Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture I am often asked how SSL and TLS can be decrypted in Wireshark captures.  I have written a separate article on HTTPS Decryption in Wireshark here.  NOTE: Wireshark no longer

Leveraging SSL and TLS Decryption in Wireshark Read More »

learn wireshark

Zero to Hero with Wireshark Display Filter Macros

Check out these great references as well:   Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture If you are a Wireshark power user, you know the importance of complex display filters to narrow searches for very particular items.  The challenge can be to recall these filters,

Zero to Hero with Wireshark Display Filter Macros Read More »

Finding HTTPS Sessions in Wireshark Captures

Check out these great references as well:   Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture For those of you who love Wireshark and are asking the question: How do I find what HTTPS site were visited within a capture? I have a clever and very

Finding HTTPS Sessions in Wireshark Captures Read More »

How do I find all packets from Apple devices in Wireshark?

Check out these great references as well:   Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture   Great question, and one I get all the time. As most of you know, the manufacturer of a networking device that uses MAC addressing can be identified by the

How do I find all packets from Apple devices in Wireshark? Read More »

The TRANSUM tool is now in Wireshark 2.4!

Check out these great references as well:   Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture It’s Sunday, it’s Father’s Day, and it is the day before Sharkfest 2017!  One of the best presents has been that TRANSUM has been included as a plugin with Wireshark

The TRANSUM tool is now in Wireshark 2.4! Read More »

Wireless Report in Wireshark 2.x

Check out these great references as well:  Our custom profiles repository for Wireshark  Our Udemy course on Wireshark   Our Udemy course on Wireless Packet capture One of the clever Wireshark 2.x features has to do with Wireless packet trace analysis. From the Wireless menu drop down, there is a WLAN Traffic item.  Let’s examine this:

Wireless Report in Wireshark 2.x Read More »

Are Traditional Service Providers Watching Over Their Shoulders?

Most Service Providers have been very busy over the past several years laying fiber to the home/premise/curb.  This activity has resulted in large jumps in the Internet speeds that many served customers are enjoying.  Of course, the less rural you are the better, but still, even the rural providers are stretching their budgets and sewing

Are Traditional Service Providers Watching Over Their Shoulders? Read More »

Scroll to Top