wireshark 与协议分析
实验三协议分析专业班级姓名学号完成日期2011 1120本机IP172.18 105.83本机MAC00-1B-FC-C0-38-5B指导教师本机默认172.18 10本机DNS202.120.1本机子网255.255.2教师评阅网关5.1服务器11.3掩码55.0结果一实验名称网络协议分析二实验目的熟悉实验室软件环境 掌握网络常用工具的使用 学习和了解网络协议分析的概念掌握wireshark网络协议分析软件的使用技术 通过wireshark捕捉网络协议保温并进行分析 自己熟悉sniffer软件三实验环境和主要设备(包括主要软硬件设备)硬件环境:P4 PC机+100M网卡,交换机,路由器等。软件环境:Windows Server 2000系统及其安装源文件,天网防火墙等 网络环境:100BaseT以太网四列出仅仅获取条件为UDP命令的实验主要步骤(包括命令和截图)(如下图, 要显示UDP命令的情况,并且还要列出主要步骤)1进入wireshark操作页面后,点击capture>interface,选择可用的IP,点击Start。2清空displafter,点击capture>options,在capturefilter中输入所需抓的包的类型 udp,同时取消 Capture packets in promiscuous mode,点击 start.Tireshark: Capture FilterEditDeleteFilterNo ARPIP onl/IP address 192.163.0.1IPX mil*TCP onl:/UDP onlyTCP orUDP port SO (HTTP)HTTP TCP port (80)No ARP and no DNSNon-HTTP and non-SMTP to4rom www.wireshark.orgHelpOKCancelping experiment口 rn n c: r+i o orl up til LI coFilter name:UDP onl:/Filter string:li dp3在该栏可同样进行捕捉过滤操作还可以对其进行命名操作。arveil Yukon Ethernet Controller. (Kicrosoft9 s Packet Scheduler) : Capturing TiresharkFile Edit View Go Capture Analyze Statistics Help昌I回争噜尅春盘|口 QI題目q門No.TimeSourceDestinationProtocoPInfoycioci5U/丄丄jS丄斗U丄于丄斗丄iyz丄灯出丄.丄uuUL)Hsource port: 了丄uesrinarion port:丄丄du斗59667307.667140192.16S.1.100113.140.13.141UDPSource port: 11504 Destination port: 314535966S307.667291218.95.66.209192.168.1.100UDPsource port: 1318 Destination port: 1150459669307.674389218.95.66.209192.168.1.100UDPSource port: 1318 Destination port: 1150459670307.674862192.16S.1.100218.95.66.209UDPSource port: 11504 Destination port: 131859671307.680569113.140.13.141192.168.1.100UDPSource port: 31453 Destination port: 1150459672307.686438180.172.43.224192.168.1.100UDPSource port: 9452 Destination port: 1150459673307.686795192.168.1.100180.172.43.224UDPSource port: 11504 Destination port: 945259674307.692612113.140.13.141192.168.1.100UDPSource port: 31453 Destination port: 1150459675307.692942192.168.1.100113.140.13.141UDPSource port: 11504 Destination port: 3145359676307.69838611314013.141192.168.1.100UDPSource port: 31453 Destination port: 1150459677307.704216113.140.13.141192.168.1.100UDPSource port: 31453 Destination port: 1150459678307.704767192.168.1.100113.140.13.141UDPSource port: 11504 Destination port: 31453Filter: Expression. Clear Apply(±)Frame 6807 (91 bytes on wire, 91 bytes captured)ffl Ethernet II, Src: 00:24:54:le:57:bO (00:24:54:le:57:bO), Dst: 54:e6汁c:40:99:44 (54:e6:fc:40:99:44) internGt Protocol, Src: 192.168.1.100 (192.168.1.100), Dst: 113.140.13.141 (113.140.13.141)田Datagram Protocol, 5rc Port: 11504 (11504), Dst Port: 31453 (31453)Data (49 bytes)000000100020003000406dd a 1s 4 8 3 -Tof Ob4 6f d4 o d 4 24 od 8 19o abb9 o 7 4 d4 1 -y c 72 13 3 6eb1 o8 17 3 4 o o 3f a o 8 1 c 5 b a 7 7 9 o 5 6a5 c 8 8 do £ 1 7 4 o 8 8b L5 16 e 74 孑 g g0 4 0 8 50 6 4 5 2T. ,(a. D. $ T. w. .MWO. . .,.Z. . 9 . N. c.:n. K|ggr.E.dq|76.X.99.33 KB/sMarvell Yukon Ether net Con troll er.(r;licro softs Packet Scheduler): <live capture in progres.P: 59678 D: 59678 M: 0"占开始営计算机系统与网ffl 2 Microsoft 0. ."华东理工大学作-我的下载-迅雷T显 Marvell Yuki:OILCH變工審砂 IE 23:034上图为抓包过程页面图arveil Yukon Ethernet Controller. (Kicrosoft9 s Packet Scheduler) : Capturing Tireshark13亟File Edit View Go Capture Analyze Statistics HelpFilter: ip.src = 113 140 13 141 扫 春盘題 Qq 門I做国第認IExpress!on. Clear Apply>-1TimeSourceDesti nationProto co LInfoyts±/ iztszzy丄丄.3 丄斗U丄£丄斗丄丄丄灯芒丄.丄uuUUHsource port: 了丄uesrinarion port:丄丄)U49837.33505111.3 140.12.141192.168.1.100UDPSource port: 314 53 Destination port: 115049857.405337113.140.13.141192.168.1.100UDPsource port: 31453 Destination port: 115049867.405429113 14013:L41192.168.1.100UDPSource port: 31453 Destination port: 115049957.45072211.3 140.12.141192.168.1.100UDPSource port: 31453 Destination port: 115049977.452662113.140.13.141192.168.1.100UDPsource port: 31453 Destination port: 1150410007.457588113.140.13.141192.168.1.100UDPSource port: 31453 Destination port: 1150410027.46670111.3 140.12.141192.168.1.100UDPSource port: 31453 Destination port: 1150410047.479132113.140.13.141192.168.1.100UDPsource port: 31453 Destination port: 1150410067.483979113.140.13.141192.168.1.100UDPSource port: 31453 Destination port: 11504LOOS7.50870911.3 140 12.141192.168.1.100UDPSource port: 31453 Destination port: 1150410107.515369113.140.13.141192.168.1.100UDPsource port: 31453 Destination port: 1150410137