WIRESHARK Flashcards
1
Q
logical operator
A
and, or, &&, ||
2
Q
specific search
A
[specific]
3
Q
negative operator
A
not, !
4
Q
equal operator
A
==, eq
5
Q
non equal operator
A
!=, ne
6
Q
comparaison operator (greater, less, etc)
A
gt
ge
lt
le
7
Q
ip destination search ?
A
ip.dest ==
8
Q
ip source search ?
A
ip.src ==
9
Q
ip source or dest ?
A
ip.addr
10
Q
ip.addr == … or …
A
ip.addr == ip.src OR ip.dst
11
Q
check if tcp syn is 1
A
tcp.flags.syn == 1
12
Q
mac adress equal to ?
A
eth.addr ==
13
Q
tcp.port == … or …
A
tcp.port == tcp.srcport OR tcp.dstport
14
Q
check if hostname is ?
A
ip.host ==
15
Q
check if multicast traffic search
A
(eth.dst[0] & 1)
Nota:
if first bit is one, so it’s multicast