Friday, February 21, 2014

Protocols Found Using WireShark

Testing out WireShark and delving into protocol details.

LLMNR
Microsoft DNS
http://en.m.wikipedia.org/wiki/Link-local_Multicast_Name_Resolution

Too much IP multicast
http://www.netcraftsmen.net/resources/archived-articles/283-ip-multicast-best-practices-and-control.html

ARP
Address Resolution Protocol
http://en.m.wikipedia.org/wiki/Address_Resolution_Protocol

NBNS
Netbios name service
http://wiki.wireshark.org/NetBIOS/NBNS
 
SSDP
Plug n play
and strange outbound connections to places I don't think I'm going. Odd.

"Magic Packet" for Wake On Lan
You thought your computer was safe when off...but no.
Best to turn off network connections if don't want your computer woken up by network traffic
http://wiki.wireshark.org/WakeOnLAN