Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Follow Me to learn Wi-Fi Packet Capture using Wireshark
Rating: 4.6 out of 5(28 ratings)
165 students

Follow Me to learn Wi-Fi Packet Capture using Wireshark

Troubleshooting WLAN/Wi-Fi Packets
Created byAndrew Walding
Last updated 8/2023
English

What you'll learn

  • Capturing Wi-Fi Traffic for Wireshark Analysis
  • Accomplishing Wi-Fi capture on Windows, MAC OSx, and Linux
  • Customizing Wireshark to maximize Wi-Fi troubleshooting
  • Troubleshooting Tips when Analyzing Wi-Fi Networks

Course content

4 sections6 lectures2h 10m total length
  • Introduction and Some Background20:10

    Welcome to this "follow me" course!

    In this first lecture, I am going to describe the problem/challenge of capturing Wi-Fi traffic using Wireshark.  I will explain why this is and will set us up for what we will be doing in the rest of the class.

    To follow me, you will need Wireshark installed.  There are some instructions in the references.

    Enjoy the class!

Requirements

  • The only prerequisites are that you have either a Windows, MAC or Linux system with Wireshark installed and a Wi-Fi interface.
  • Some folks may require external Wi-Fi interface

Description

Welcome to this hands-on Wi-Fi and WLAN packet capture course using Wireshark!

This course is designed using a true “follow me” training methodology. There are no traditional slide decks, long theory presentations, or disconnected demonstrations. Instead, you will learn by actively following along step-by-step as we configure systems, capture wireless traffic, and analyze real packet data together in real time. The goal is to build practical skills through repetition, observation, and direct hands-on experience.

Throughout this course, you will learn how to properly capture Wi-Fi/WLAN traffic using Wireshark on Windows, macOS, and Debian-based Linux systems. While many people believe that selecting a wireless adapter in Wireshark and clicking “Start Capture” is enough to analyze wireless traffic, the reality is much more complicated. Most default captures only show a limited portion of the wireless conversation — typically just the data traffic associated with the local device. Critical wireless management and control frames such as Beacon Frames, Probe Requests, Probe Responses, Association Frames, De-Associations, Authentication traffic, RTS/CTS exchanges, and many other important WLAN frame types are often completely missing.

This course explains why capturing complete wireless traffic is challenging and why operating system limitations, wireless chipset capabilities, driver support, and monitor mode functionality all play major roles in successful Wi-Fi packet analysis. You will learn the differences between standard wireless captures and true monitor mode packet captures, along with the practical limitations that exist on various hardware and operating systems.

In addition to learning how to capture wireless traffic, students will begin developing foundational WLAN packet analysis skills using Wireshark. The course walks through the tools, techniques, configurations, adapters, and workflows required to successfully observe and analyze wireless network behavior in real-world environments. Whether your goal is troubleshooting Wi-Fi problems, learning wireless networking, improving visibility into WLAN operations, or preparing for more advanced wireless analysis, this course provides the practical foundation needed to begin working effectively with Wireshark in wireless environments.

Who this course is for:

  • Anyone wanting to deepen their understanding of Wireshark in Wi-Fi environments and troubleshooting Wi-Fi in general.
  • Home Users, Corporate IT/Network folks
  • Service Provider Field Technicians