<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Wireshark Network Analyzer Mind Map</title>
	<atom:link href="http://www.mindcert.com/general-items/wireshark-network-analyzer-mind-map/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mindcert.com/general-items/wireshark-network-analyzer-mind-map/</link>
	<description></description>
	<lastBuildDate>Fri, 30 Apr 2010 22:20:21 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
	<item>
		<title>By: Jani Kenttälä</title>
		<link>http://www.mindcert.com/general-items/wireshark-network-analyzer-mind-map/comment-page-1/#comment-1101</link>
		<dc:creator>Jani Kenttälä</dc:creator>
		<pubDate>Fri, 15 Jan 2010 11:28:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.mindcert.com/?p=52#comment-1101</guid>
		<description>A nice mindmap indeed. Works also as a good cheatseet for managing with Wireshark filters, which in some cases turn into a Hydra (a mythological many-headed serpent). 

Wireshark has been an excellent tool in getting into the bottom of problems. With complex network you rarely can rely on documentation &amp; logs in troubleshooting, you need to look what is actually going on from the network traffic. 

One thing we had trouble, back in the days at OUSPG research group, was that due to fact that many systems depend on services all over the network, we needed captures from several points in the network to get to the bottom of things. Combining pcaps and filtering out background noise was laborious. We ended up with situations like these:

https://www.clarifiednetworks.com/Traditional Analysis

Thus we developed a nice, graphical UI which can be used to find the needle in the haystack, and then, when we needed to find the details, we could export actual packets to the Wireshark. It turned out to be something that a lot of people wanted, so we spinned off a company to develop the tool further:

https://www.clarifiednetworks.com/Clarified Analyzer

If you share your thoughts, check if our Analyzer is useful for you.</description>
		<content:encoded><![CDATA[<p>A nice mindmap indeed. Works also as a good cheatseet for managing with Wireshark filters, which in some cases turn into a Hydra (a mythological many-headed serpent). </p>
<p>Wireshark has been an excellent tool in getting into the bottom of problems. With complex network you rarely can rely on documentation &amp; logs in troubleshooting, you need to look what is actually going on from the network traffic. </p>
<p>One thing we had trouble, back in the days at OUSPG research group, was that due to fact that many systems depend on services all over the network, we needed captures from several points in the network to get to the bottom of things. Combining pcaps and filtering out background noise was laborious. We ended up with situations like these:</p>
<p><a href="https://www.clarifiednetworks.com/Traditional" rel="nofollow">https://www.clarifiednetworks.com/Traditional</a> Analysis</p>
<p>Thus we developed a nice, graphical UI which can be used to find the needle in the haystack, and then, when we needed to find the details, we could export actual packets to the Wireshark. It turned out to be something that a lot of people wanted, so we spinned off a company to develop the tool further:</p>
<p><a href="https://www.clarifiednetworks.com/Clarified" rel="nofollow">https://www.clarifiednetworks.com/Clarified</a> Analyzer</p>
<p>If you share your thoughts, check if our Analyzer is useful for you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Week 1 in Review &#8211; 2010 &#124; Infosec Events</title>
		<link>http://www.mindcert.com/general-items/wireshark-network-analyzer-mind-map/comment-page-1/#comment-1097</link>
		<dc:creator>Week 1 in Review &#8211; 2010 &#124; Infosec Events</dc:creator>
		<pubDate>Tue, 12 Jan 2010 10:09:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.mindcert.com/?p=52#comment-1097</guid>
		<description>[...] Wireshark Network Analyzer Mind Map &#8211; mindcert.com A mind map for Wireshark [...]</description>
		<content:encoded><![CDATA[<p>[...] Wireshark Network Analyzer Mind Map &#8211; mindcert.com A mind map for Wireshark [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andrew Mason</title>
		<link>http://www.mindcert.com/general-items/wireshark-network-analyzer-mind-map/comment-page-1/#comment-1095</link>
		<dc:creator>Andrew Mason</dc:creator>
		<pubDate>Tue, 05 Jan 2010 18:34:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.mindcert.com/?p=52#comment-1095</guid>
		<description>Glad you liked the Mind Map. Let me know if there are any others you would like to see.</description>
		<content:encoded><![CDATA[<p>Glad you liked the Mind Map. Let me know if there are any others you would like to see.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Balgan</title>
		<link>http://www.mindcert.com/general-items/wireshark-network-analyzer-mind-map/comment-page-1/#comment-1094</link>
		<dc:creator>Balgan</dc:creator>
		<pubDate>Tue, 05 Jan 2010 17:46:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.mindcert.com/?p=52#comment-1094</guid>
		<description>Nice mindmap quite useful, thanks for doing these!</description>
		<content:encoded><![CDATA[<p>Nice mindmap quite useful, thanks for doing these!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
