Cyber security

profileJohn@123
CSCI397F20_AnalyzingICSNetworkTrafficwithNetworkAnalysisTools_OBJECTIVES.pdf

9/19/2020 CSCI 397 F20: Analyzing ICS Network Traffic with Network Analysis Tools: OBJECTIVES

https://training.icscsi.org/mod/lesson/view.php?id=1813&pageid=175 1/2

You are logged in as Manish Khatri (Log out) CSCI 397 F20 Copyright (c) 2016-2020 ICSCSI LLC. All rights reserved.

Dashboard / My courses / CSCI 397 F20 / Week 4 - Lab Exercise - Network Analysis Tools / Analyzing ICS Network Traffic with Network Analysis Tools

Fundamentals of Industrial Control System Cyber Security

Analyzing ICS Network Traffic with Network Analysis Tools OBJECTIVES

Unlike the first part of this lab exercise that used a lot of illustrations to introduce new tools and capabilities, this part will focus on using these tools to perform analysis of different types of industrial and business communications that occur on the network. Each section will ask you to perform a variety of tasks using a set of network captures that should be downloaded from LAB EXERCISE 1. The lab exercise submittal document also contains a sections that must be completed based on the tasks given within the lab exercise.

This exercise has the following objectives:

1. Download and open a network packet capture (pcap) file in each of the three network analysis tools. This pcap file contains a diversified collection of network protocols where you will investigate the Server Message Block (SMB) used to exchange files between Windows host computers.

2. Using the same pcap file as Step 1 above, isolate and analyze the Modbus/TCP traffic that occurs between a Windows computer and a PLC.

3. Download and open a pcap file containing Common Industrial Protocol (CIP) traffic that occurs between a Windows computer and a PLC.

4. Download and open a pcap file containing Open Platform Communication (OPC) Data Access traffic that occurs between an OPC Server and a Windows computer.

LAB EXERCISE 1 contains the files downloads needed for this exercise, along with the submittal document containing questions that will be discussed throughout the exercise. Do not forget to submit your files when you have completed this activity.

(Note: problems may occur if using Google Chrome as a browser where it tries to open links in Google Docs. The "Docs PDF/PowerPoint Viewer (by Google)" extension must be disabled or removed.)

PREV < Introduction NEXT > Analyzing SMB Traffic

You have completed 33% of the lesson 33%

◄ Downloading and Using Network Analysis Tools

Jump to... QUIZ 2 - ICS Fundamentals 2 ►

9/19/2020 CSCI 397 F20: Analyzing ICS Network Traffic with Network Analysis Tools: OBJECTIVES

https://training.icscsi.org/mod/lesson/view.php?id=1813&pageid=175 2/2