Unusual UDP traffic

The following are a few traffic patterns that may be found suspicious in some environments.

Scenario 1: In a scenario where the UDP service is not running/available, what will the traffic look like then? Refer to the following screenshot:

The client requested an invalid resource that the server couldn't locate and hence returned with an error code and the summary message File not found (seen in the list pane).

Scenario 2: Sometimes, it is possible that the server daemon may not be running and the client may request a certain resource. In such cases, the client would receive the ICMP destination unreachable error with the ...

Get Wireshark 2 Quick Start Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.