SharkFest'21 Virtual US will take place September 13-17. Registration coming soon...

Attendance is limited, so don’t miss out on this opportunity to learn with the best and meet hundreds of your peers!

Note that all pre-conference participants are automatically registered for the main conference.

All times are in CEST time zone

Register

Registration Fee
SharkFest Conference Only Free
Pre-Conference Class I: Analyzing Pcaps Faster with Filters (Betty DuBois) €445
Pre-Conference Class II: Next Generation Protocols & Advanced Network Analysis (Phill Shade) €445
Pre-Conference Class III: SSL/TLS Troubleshooting with Wireshark (Sake Blok) €445
Pre-Conference Class I + Pre-Conference Class II €890
Pre-Conference Class I + Pre-Conference Class III €890
Pre-Conference Class II + Pre-Conference Class III €890
Pre-Conference Class I + Pre-Conference Class II + Pre-Conference Class III €1,335
Conference Keynotes by Industry Luminaries
2 Days of Instructional Sessions delivered by Wireshark Experts
Beginner/Intermediate/Advanced/Developer Tracks
Packet Challenges & Socializing
The Packet Doctor is In! Packet Trace Analysis with the Experts
What is SharkFest? SharkFest is a highly-interactive educational conference focused on sharing knowledge, experience and best practices among members of the Wireshark global developer and user communities.
Why Should I Attend? • To benefit from an immersive Wireshark educational experience
• To interact with veteran packet analysts
• To test your Wireshark knowledge
• To network, socialize, and share knowledge with like-minded Wireshark enthusiasts
• To enhance your Wireshark user experience
• To meet Gerald Combs (creator of Wireshark) and some of the Wireshark Core Developers
Location Online
Dates June 14th-18th, 2021
SharkFest Registration Fee Free
CANCELLATION POLICY

All cancellation requests must be made in writing to [email protected] If registered but unable to attend, another attendee within your organization may be designated to take your place. All substitution requests must be submitted by the original attendee via e-mail to [email protected]

Instructor Betty BuBois
Date Monday, June 14th, 2021
Location Online
Price €445 for the Pre-Conference Class
Payment Methods Payment is by credit card.
Class Title Filtering and analyzing packets with Wireshark: A scenario based approach
Description You've just been brought into the bridge call. They want you to "do a capture" and see if you can analyze the issue. You grabbed a million packets. Now you have two goals:

1.) Find the 6 packets that actually matter given the situation.
2.) Interpret what those 6 mean.

Knowing the right filters will achieve goal one. Laser focusing on the remaining packets helps with goal 2. We'll use the most common troubleshooting and security scenarios to teach core Wireshark techniques. Be ready with the latest version of Wireshark installed so you can hone your filtering and analyzing skills.
Outline Scenarios:

Latency (It's not the network)
Latency (Darn! It is the network)
Broken App
Sudden|Unexpected disconnects
Ransomware
Threat Hunting

Wireshark Skills:

Examine Capture and Display filter syntax
Save both Capture and Display filters
Determine the most efficient filter methods, especially when working with large data sets
Classify which protocols and fields would be applicable to each scenario
Investigate how a host responds to a negative answer
Review application flows for deviations from expected steps
Validate versions and settings negotiations for common protocols
Translate Suricata Rules and Zeek Signatures into Wireshark filters
Who Should Attend This course is at an intermediate level. It will move quickly between scenarios, so attendees should be comfortable with the following tasks: setting up Wireshark, capturing, adding columns, changing color rules and the basics of TCP/IP. After this course, you will become more efficient and confident analyzing pcaps with Wireshark. Network engineers, network analysts, application developers, cybersecurity analysts and security engineers would get the most benefit from this course.
CANCELLATION POLICY
14 days or more before the Pre-Conference Class start date Full Refund minus €100 administrative fee
Less than 14 days before the Pre-Conference Class start date No Refund

All cancellation requests must be made in writing to [email protected] If registered but unable to attend, another attendee within your organization may be designated to take your place at no additional charge. All substitution requests must be submitted by the original attendee via e-mail to [email protected]

Instructor Phill Shade
Dates Tuesday, June 15th, 2021
Location Online
Price €445 for the Pre-Conference Class
Payment Methods Payment is by credit card.
Class Title Next Generation Protocols & Advanced Network Analysis
Description Time is money when troubleshooting and optimizing network performance issues. Practical network analysis encompasses capturing data and discerning the critical patterns hidden within network traffic streams to identify the problem. Additional complexity due to the increasing adoption of the Nest Generation Protocol stacks, including the IPV6-based family, threatens to make this job even more challenging. This course provides the student with an introduction to investigating and analysis techniques focusing on the use of vendor-neutral, Open-Source Tools such as Wireshark.
Recommended Prerequisites This course is at an intermediate level, and given the fast pace, students should, at a minimum, be proficient with creating Wireshark profiles, columns, color rules, capture and display filtering, and the basics of the IPV4-based TCP/IP protocol stack.
Outline PDF
Who Should Attend This course is for Networking, Engineering, and Security personnel who want to advance their packet investigation techniques by studying the Next Generation Networking Protocols using Wireshark. Successful completion of this course will provide these individuals with a path-way into the field of both Network and Forensics Analysis.
CANCELLATION POLICY
14 days or more before the Pre-Conference Class start date Full Refund minus €100 administrative fee
Less than 14 days before the Pre-Conference Class start date No Refund

All cancellation requests must be made in writing to [email protected] If registered but unable to attend, another attendee within your organization may be designated to take your place at no additional charge. All substitution requests must be submitted by the original attendee via e-mail to [email protected]

Instructor Sake Blok
Dates Wednesday, June 16th, 2021
Location Online
Price €445 for the Pre-Conference Class
Payment Methods Payment is by credit card.
Class Title SSL/TLS Troubleshooting with Wireshark
Description The applications of today depend more and more on secure communication channels. For most internet applications the TLS protocol (still mostly referred to as SSL) is providing the secure channel to communicate over. To be able to troubleshoot problems with Applications that use (mutual) TLS, one must understand how TLS sessions are set up, how certificates and certificate authorities come into play and how you can look inside the encrypted traffic to analyse the (cleartext) application data. In this session you will gain a better understanding of the operation of the TLS protocol and more importantly, you will learn how to troubleshoot TLS based communications when things don't work as expected.
Outline
  • TLS fundamentals
  • • Why TLS (and what happened to SSL)?
  • • Cryptology 101
  • • Understanding The TLS protocol
  • • The TLSv1.2 handshake
  • • The TLSv1.3 handshake
  • • Troubleshooting TLS handshakes
  • • LAB exercises
  • TLS continued
  • • Understanding mutual TLS (Authentication based on TLS client certificates)
  • • Understanding TLS session resumption
  • • Analysing encrypted application data (without decrypting it)
  • • Setting up a configuration profile for TLS analysis
  • • LAB exercises
  • Decrypting TLS traffic
  • • Decryption based on the private key of the server
  • • When will this work and when won't it work
  • • Decryption based on the TLS session keys
  • • When will this work and when won't it work
  • • how to get TLS session keys
  • • LAB exercises
Who Should Attend Network technicians, network engineers, cybersecurity analysts, security engineers and application developers who are at the beginning to intermediate stages of packet analysis. The course will be focused on core concepts around Wireshark, helping attendees become more efficient and confident analyzing trace files.
CANCELLATION POLICY
14 days or more before the Pre-Conference Class start date Full Refund minus €100 administrative fee
Less than 14 days before the Pre-Conference Class start date No Refund

All cancellation requests must be made in writing to [email protected] If registered but unable to attend, another attendee within your organization may be designated to take your place at no additional charge. All substitution requests must be submitted by the original attendee via e-mail to [email protected]