Practical Techniques for Analyzing VoIP Traffic
Learn to capture and analyze suspicious data on VoIP networks.
VoIP network analysis is a specialized subset of traditional network analysis and encompasses not only the skill of capturing data, but also the ability to discern unusual patterns hidden within seemingly normal network traffic. Through real-world examples and hands-on exercises, you will gain a set of analysis techniques focusing on the use of vendor-neutral, open source tools to provide insight into:
- VoIP network analysis fundamentals
- Data recorder technology and data mining
- VoIP-focused network security principles, including encryption technologies and defensive configurations of network infrastructure devices
- Recognition of a variety of factors that affect VoIP-based networks and the quality of the voice data
- Key VoIP-related protocols
- Open source VoIP network analysis tools
- Specialized VoIP network analysis, including audio data traffic reconstruction and viewing techniques
You will receive:
- Training binder with numerous baseline trace files
- DVD with VoIP and networking tools
- Library of VoIP network analysis reference documents
You are required to bring your own laptop.
What You'll Learn
- Principles of VoIP network analysis and how to apply them
- Key VoIP-related protocols, including SIP, MGCP, SCCP, UNISTEM, and H.323, and related supporting protocol architectures
- Analyze and evaluate latency, out-of-sequence packets, jitter, and Quality of Service (QoS) and how the end user experiences each
- Configure various open source tools for VoIP analysis
- Utilize tools to recognize traffic patterns associated with VoIP network behavior
- Reconstruct VoIP conversations for detailed analysis and quality assessment purposes
- Recognize potential VoIP network security infrastructure misconfigurations
Who Needs to Attend
Network engineers and VoIP and network telephony personnel who possess basic- to intermediate-level general VoIP, telephony, and networking knowledge
Prerequisites
- Basic familiarity with TCP/IP networking, VoIP fundamentals, and basic network infrastructure devices such as switches, routers, etc.
Recommended courses:
- Understanding Networking Fundamentals
- TCP/IP Networking
- ICND1 - Interconnecting Cisco Network Devices 1
- ICND2 - Interconnecting Cisco Network Devices 2
- TSHOOT - Troubleshooting and Maintaining Cisco IP Networks v1.0
- Voice over IP Foundations
Follow-On Courses
There are no follow-ons for this course.
Course Outline
1. Overview of Telephony
-
PSTN Technology and Nomenclature
- History of Telephony: From OSTN tVoIP
- Limitations
- VoIP Terminology
-
IP Packet vs. PSTN Switching
- Signaling: In-Band vs. Out-of-Band Signaling
-
Next Generation Networking and VoIP Technology
- VoIP Benefits
- Competing Standards
2. VoIP Troubleshooting and Analysis
-
Data Collection
- Location: How Network Infrastructure Devices Affect Forensics Analysis
- Stealth/Silent Collection of Data: Tips and Techniques
- Capture Configuration and Multiple Captures
3. The Technology of VoIP
-
VoIP Components and Hardware Nomenclature
- Competing Standards: Public vs. Proprietary
- Protecting VoIP Traffic: QoS
- Assessment of Call Quality: Competing Metrics
4. Statistical Assessment of VoIP Protocols
- Key Protocols
- VoIP Codecs
- Selecting Key Information for Statistical Evaluation
- Using a Host Table as a VoIP Analysis Aid
5. Making the Call: VoIP Conversation Analysis
-
VoIP Protocol Analysis Techniques
- Session Step
- Tear Down
- Diagramming and Interpreting a Conversation
6. Expert VoIP Analysis
- Using Expert Systems tEvaluate VoIP Performance
-
Determining Which Conversations Have Problems
- Analyzing Latency
- Throughput
- Out-of-Sequence Packets
- Jitter
- Visual-Based VoIP Analysis
7. Graphing and Reporting VoIP
- Using Pilot Reporting
- Reporting and Exporting Data
8. VoIP Security Considerations
- Existing Vulnerabilities
- Spoofing Caller ID
- Common VoIP Exploits
Appendix 1: VoIP Network Analysis Reference Information
Appendix 2: Baseline VoIP Trace Files
United States [