Wireshark Based Network Analysis Report - Traffic Analysis

Verified

Added on  2024/04/26

|18
|2806
|493
Report
AI Summary
This report provides a comprehensive analysis of network traffic using Wireshark, focusing on two websites. It covers general statistics, network performance metrics such as throughput and round trip time, load distribution, warnings and errors, and TCP retransmissions. The report compares the performance of the two websites, highlighting differences in resource utilization and bandwidth consumption. Additionally, it compares Wireshark with Microsoft Message Analyzer, discussing their features and usability. The analysis aims to provide insights into optimizing network infrastructure and application performance. Desklib is your go-to for more solved assignments and past papers.
Document Page
Network Analysis using
Wireshark
Student ID: MIT172244
1
tabler-icon-diamond-filled.svg

Paraphrase This Document

Need a fresh take? Get an instant paraphrase of this document with our AI Paraphraser
Document Page
Contents
Task Description..........................................................................................................................................3
Introduction.................................................................................................................................................4
General Statistics.........................................................................................................................................5
Network Performance.................................................................................................................................7
Comparison 1............................................................................................................................................13
Comparison 2............................................................................................................................................15
Conclusion.................................................................................................................................................17
Reference..................................................................................................................................................18
2
Document Page
Task Description
This report is prepared for the analysis the two given websites using a network analyzer such as
Wireshark Tool. This task requires to analyze the web traffic of websites and with multimedia content.
For the analysis of a couple of websites has to be chosen from the given list. The site has to be chosen as
per the last digit of the Student ID. Name and the ID are given below.
Name: RAMAN
MIT ID: MIT172244
Website sets are given below according to the ID.
- http://www.radionz.co.nz/news
- https://www.skynews.com.au
3
Document Page
Introduction
The Internet is the backbone of the today’s high speed computing world. And all the businesses are
transformed to the web application and these applications relies heavily on the network infrastructure
implemented at the data centre. And in order to maintain the performance of the application the 24x7
monitoring of the application and its services are done. This report is prepared for the analysis of the
network traffic from host to the web server. The analysis of the network traffic is done using the sniffing
technology. The sniffing tool is available both in the hardware and the software. For this task, we have
chosen the Wireshark.
The Wireshark is available freely on the internet and it is open sources and supports multiple formats.
Now, this tool provides various capabilities for the system and network administrator to analyze the
given website network traffic and rectify the issues in the network. And this also helps in providing the
report regarding various factor application services. Now report is described in four parts and each part
is given below.
- General statistics of the websites traffic capture.
- Wireshark graph screenshot for various statistics dependent on the traffic.
- Statistics and graph comparison from both website traffic.
- Network Traffic Packet Evaluation with a different tool like Microsoft Message Analyzer.
4
tabler-icon-diamond-filled.svg

Paraphrase This Document

Need a fresh take? Get an instant paraphrase of this document with our AI Paraphraser
Document Page
General Statistics
The general statistics are the overall analysis of the network traffic capture which is done using the
sniffing tool like Wireshark. This traffic captured include mostly the textual and multimedia content of
the chosen website. Now one of the websites contains the audio and video content so it uses the
streaming to transfer the website. Now the analysis of the website traffic is done inside the home
network using the Local ISP services. This network uses a very small subnet of class C private address
space i.e. 192.168.1.0/24. And device address is given below.
- Internet Modem – 192.168.1.1
- Traffic Capture Device – 192.168.1.4
Traffic capture statistics analysis of both the website are done one by one and they are given below with
brief details in the table.
Statistics http://www.radionz.co.nz/news https://www.skynews.com.au
Total Time of Packet Capture 143.570 Seconds 185.412 Seconds
Total Number of Packet
Capture
13977 57255
Server IP Address 103.14.3.1 23.76.157.72
Average Packet Size, B 863.5 949.5
Average PPS 97.4 308.8
Average bits/s 672k 2346k
Average bytes/s 84k 293k
The packet capturing was done on the computer workstation which has enough hardware resources for
this task. According to the general statistics of both the website the second website consume more
resources than the first one. This is because of the heavy multimedia content placing on the website
application. All the analysis of the data is done on the Wireshark tool for both the website. And in
general, the heavy pages of the website takes more time to load and requires the high bandwidth
utilization.
Statistics Snapshot
- http://www.radionz.co.nz/news
5
Document Page
- https://www.skynews.com.au
6
Document Page
Network Performance
The key part of the application is the performance in all aspect of the user and industry requirement
from loading of the page to data delivery. As the performance has become the critical part of the server
application so it is become very hard to manage all the system resources. So the detailed analysis of the
application need to be done in order to check the application and the hardware are performing
- Throughput
- Round Trip Time
- Load Distribution
- Warning and errors
- TCP retransmissions
Throughput
Throughput is very important for the web server application to work properly on the end machine of the
user. And the throughput analysis helps in understanding the behaviour of the network flow in the
infrastructure of data centre and server. So, for both the website the throughput are:
- Website: http://www.radionz.co.nz/news
7
tabler-icon-diamond-filled.svg

Paraphrase This Document

Need a fresh take? Get an instant paraphrase of this document with our AI Paraphraser
Document Page
- Website: https://www.skynews.com.au
Round Trip Time
The Round Trip Time is used to identify the latency in the network traffic and it affects most of the time
for any application on the network. It generally happens due to the poor network connectivity between
host and server [3]. So round trip time for given website are:
- Website: http://www.radionz.co.nz/news
The round trip time of this website is 91ms.
- Website: https://www.skynews.com.au
The round trip time of this website is 10ms.
8
Document Page
Load Distribution
It is one of a crucial component of the network traffic analysis for the server and web application.
Through this, we can analyze the network traffic priority in the network and can easily identify the issues
for the various website not working properly on the host machine. So, for both the website the load
distribution are:
Website: http://www.radionz.co.nz/news
- Website: https://www.skynews.com.au
9
Document Page
Warnings and errors
This issue occurs on the day to day basis on every network. And this issue affects most of the application
and its analysis needs to be done regularly. So the graphs of both traffic capture are given below.
- Website: http://www.radionz.co.nz/news
- Website: https://www.skynews.com.au
10
tabler-icon-diamond-filled.svg

Paraphrase This Document

Need a fresh take? Get an instant paraphrase of this document with our AI Paraphraser
Document Page
TCP retransmissions
The TCP retransmission graph of both the websites are given below one by one according to the packet
capture analysis in the Wireshark Tool.
- Website : http://www.radionz.co.nz/news
11
Document Page
- Website : https://www.skynews.com.au
12
chevron_up_icon
1 out of 18
circle_padding
hide_on_mobile
zoom_out_icon
[object Object]