Network Analysis Flashcards

1
Q

This is the process of recording, reviewing, and analyzing network traffic for the purpose of performance, security and/or general network operations and management.

A

Network Traffic Analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the three parts of the TCP three-way handshake?

A

SYN - SYN/ACK - ACK

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What involves examining certain fields within packets sent from the target to determine the operating system in use?

A

OS Fingerprinting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Actively sending specially crafted packets to the target to elicit replies that will reveal the operating system on the target’s machine.

A

Active Fingerprinting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Accomplished by not actively sending any packets to the host. Listening only to the packets the target host is sending and receiving.

A

Passive Fingerprinting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A column view of packets received giving brief information per columns selected.`

A

Packet List Pane

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Shows a canonical hex dump of the packet data. Each line contains the data offset, sixteen hexadecimal bytes, and sixteen ASCII bytes.

A

Packet Bytes Pane

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Data for packet selected as it is related to the OSI and TCP/IP model layers

A

Packet Detail Pane

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What 5 things can Wireshark` be used for?

A
  1. Baselines
  2. Host Enumeration
  3. Terrain Mapping
  4. Malware Detection
  5. Operator Accountability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly