analyzing packets


I just installed wireshark and need to know what to look for on the network that might be slowing it down - many broadcasts?, rogue dhcp server? etc? What should I look for specifically? Is there a quick simple guide for this? Thanks.

I don't want to offend you but the answer to your question

  • Is there a quick simple guide for this?

is no. Wireshark is just a - admittedly great - tool to help you spot things faster. You still need to understand the protocols that are used in the communication. A good start is probably TCP/IP Illustrated by W. Richard Stevens. The wireshark books from Laura Chappell are cretainly also a good read:

More resources:

NB.: Performance problems are among the most difficult problems to diagnose.

