WP-202 Advanced WLAN Assessment and Analysis ("Packets Never Lie")
Duration
Public Class Duration: 3 Days (prerequisite of WP-200 STRONGLY recommended)
Web-Delivered Class Duration: 4 half days (9:30 AM PT - 12:00 PM PT M-TH)
Prerequisite: WP-200 strongly recommended
Overview and Method
This course dives deeper into wireless protocol analysis, particularly a more thorough understanding of wireless management, security, TCP/IP and related protocol variants, both benevolent and nefarious. It builds on the troubleshooting concepts in WP-200 to include long-term statistics gathering, monitoring, and general wireless network health. In-class activities are more advanced, often combining concepts in more complex scenarios for students to decipher. Successful graduates from this class will be ready to immediately apply skills in real-world environments.
- Wireless LAN Packets
- Frames in the Wireless World
- Management Frames
- Coordination Functions
- Roaming
- 802.11e – Wireless QOS
- 802.11e – WQOS
- HCF
- WMM
- Additional Features of 802.11e
- Retransmissions and Fragmentation
- Retransmissions
- Fragmentation
- Physical Layers
- Uses for OmniSpectrum
- Rogue Identification
- Using the Name Table
- Difficulties
- Signal Strength
- Identifying Rogues in Omnipeek
- WLAN Security
- Protocol Analysis and Security
- WPA-PSK Exchange
- Things to do, with the Peek products
- Back End Communications and Cross Segment Analysis
- CAPWAP
- IAPP
- LWAPP
- Cross Segment Analysis
- Upper Layer Protocols ARP and DHCP
- The Expected Behavior of ARP
- DHCP In The Capture Window
- The Expected Behavior Of DHCP
- Common DHCP Processes
- DHCP Lease Rebinding (Rejected)
- Troubleshooting DHCP
- DNS and SNMP
- DNS Organization
- DNS Resource Records
- SNMP Terminology
- Typical SNMP Behavior
- SNMP Security
- SNMP Troubleshooting Techniques
- Packet Biathlon – OmniPeek*
- This intensive hands-on lab will allow students to use the OmniPeek platform focusing on analysis situations. The course is comprised of a series of in-depth, instructor lead scenarios and trace files that effect an enterprise operation.
* only available via public or onsite