WS Lab 7

docx

School

Midlands Technical College *

*We aren’t endorsed by this school

Course

227

Subject

Industrial Engineering

Date

Dec 6, 2023

Type

docx

Pages

9

Uploaded by DrHawkMaster575

Report
IST 227 Lab 7 Lab 7 – Network Layer Protocols (ARP, IP, ICMP) *Disclaimer – All tools and skills used during labs are the responsibility of the student, neither MTC nor the instructor will not be held liable for any damage to personal or corporate systems or networks. Before you capture any network traffic, ensure you have permission to listen to the network traffic. If you are an IT staff member performing these tasks in a corporate environment, obtain written permission to listen to network traffic for troubleshooting, optimization, security, and application analysis. In this lab you will examine the address resolution protocol (ARP), the internet protocol (IP) addresses, and the internet control messaging protocol (ICMP) and how they are used for normal traffic functions on your network. 1. Launch Wireshark , click the File -> Open on the menu bar or the Open button on the tool bar and select the file labeled Lab7.pcapng to open the capture. a. How many packets do you see in this capture? 1 b. Do you think this capture shows all packets that where captured, why? Small in size c. What would the display filter ( !bootp && !udp && !tcp ) do to a capture file displayed in Wireshark? 1
IST 227 Lab 7 2. Examine the screenshot. Frame 2 is an ARP message. Look at the Packet details pane. a. What type of message is this ARP? A gratuitous Request b. What is the value of the protocol type? 0x0800 c. What is the Opcode and what is it for? T he Opcode is request and it is for ARP d. What is the source Ethernet address? ca:01:06:71:00:00 e. What is the source Network address? 172.18.11.254 f. What is the destination Network address? 172.18.10.3 g. What is the destination Ethernet address? ff:ff:ff:ff:ff:ff. 2
IST 227 Lab 7 3. Frame 8 is also an ARP message. Use the screenshot to help answer the following: a. What type of message is this ARP? request message b. What is the value of the protocol type? 0x0800 c. What is the Opcode and what is it for? 1 request d. What is the source Ethernet address? 00:50:79:66:68:00 e. What is the source Network address? 172.18.10.3 f. What is the destination Network address? 172.18.10.3 g. What is the destination Ethernet address? ff:ff:ff:ff:ff:ff 4. Frame 12 shows another ARP message. Use the screenshot below to answer the following: 3
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help
IST 227 Lab 7 a. What type of message is this ARP? b. What is the value of the protocol type? c. What is the Opcode and what is it for? opcode is the instruction that the CPU executes d. What is the source Ethernet address? The device's physical address that sent the frame e. What is the source Network address? traffic from a private network can be routed to the internet using source network address translation f. What is the destination Network address? IP address of the network to include in the routing table is the destination network address g. What is the destination Ethernet address? h. Ethernet addresses are unique identifiers. Ethernet source and destination addresses are 6-byte patterns assigned to each hardware node or workstation individually. This is a significant number because it is the sole means for networked hardware to recognize other devices. 4
IST 227 Lab 7 5
IST 227 Lab 7 5. Frame 14 is ICMP message, look at the IP address information and the Type and Code fields for ICMP an answer the following: a. What type of message is this ICMP? b. What is the value of the type field? c. What is the value of the code field? d. What is the source Network address? e. What is the destination Network address? f. What is this message used for? 6
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help
IST 227 Lab 7 6. Frame 15 is also an ICMP message, look at the IP and ICMP values to answer the following: a. What type of message is this ICMP? b. What is the value of the type field? c. What is the value of the code field? d. What is the source Network address? e. What is the destination Network address? f. What is this message used for? 7
IST 227 Lab 7 7. Frame 51 is another ICMP message. Look at the screenshot and answer the following: a. What type of message is this ICMP? b. What is the value of the type field? c. What is the value of the code field? d. What is the source Network address? e. What is the destination Network address? f. What is this message used for? 8
IST 227 Lab 7 8. As you can see in the capture, there are a lot of different conversations that occur simultaneously on the network. Based on the packets from this analysis view we can build a picture of the network. a. Use diagraming tool like Draw.io ( https://www.draw.io ) or packet tracer to build an image of the network based on traffic seen in this analysis. 9
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help