9.3.1.2 Packet Tracer Simulation - Exploration of TCP and UDP Communication
9.3.1.2 Packet Tracer Simulation - Exploration of TCP and UDP Communication
9.3.1.2 Packet Tracer Simulation - Exploration of TCP and UDP Communication
Topology
Objectives
Part 1: Generate Network Traffic in Simulation Mode
Part 2: Examine the Functionality of the TCP and UDP Protocols
Background
This simulation activity is intended to provide a foundation for understanding the TCP and UDP in detail.
Simulation mode provides the ability to view the functionality of the different protocols.
As data moves through the network, it is broken down into smaller pieces and identified in some fashion so
that the pieces can be put back together. Each of these pieces is assigned a specific name (protocol data unit
[PDU]) and associated with a specific layer. Packet Tracer Simulation mode enables the user to view each of
the protocols and the associated PDU. The steps outlined below lead the user through the process of
requesting services using various applications available on a client PC.
This activity provides an opportunity to explore the functionality of the TCP and UDP protocols, multiplexing
and the function of port numbers in determining which local application requested the data or is sending the
data.
Page 1 of 6
In the URL field, enter 192.168.1.254 and click Go. Envelopes (PDUs) will appear in the simulation
window.
Enter the ftp 192.168.1.254 command. PDUs will appear in the simulation window.
j.
Click DNS Client and click the Desktop tab > Command Prompt.
l.
Enter the nslookup multiserver.pt.ptu command. A PDU will appear in the simulation window.
Step 6: Verify that the traffic is generated and ready for simulation.
Every client computer should have PDUs listed in the Simulation Panel.
Click Capture/Forward once. All of the PDUs are transferred to the switch.
s.
Click Capture/Forward again. Some of the PDUs disappear. What do you think happened to them?
____________________________________________________________________________________
t.
Click Capture/Forward six times. All clients should have received a reply. Note that only one PDU can
cross a wire in each direction at any given time. What is this called?
____________________________________________________________________________________
u. A variety of PDUs appears in the event list in the upper right pane of the simulation window. Why are they
so many different colors?
____________________________________________________________________________________
v.
2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public.
Page 2 of 6
Step 2: Examine HTTP traffic as the clients communicate with the server.
w. Filter the traffic that is currently displayed to display only HTTP and TCP PDUs filter the traffic that is
currently displayed:
1) Click Edit Filters and toggle the Show All/None check box.
2) Select HTTP and TCP. Click anywhere outside of the Edit Filters box to hide it. The Visible Events
should now display only HTTP and TCP PDUs.
x.
Click Capture/Forward. Hold your mouse above each PDU until you find one that originates from HTTP
Client. Click the PDU envelope to open it.
y.
Click the Inbound PDU Details tab and scroll down to the last section. What is the section labeled?
____________________________________________________________________________________
Are these communications considered to be reliable?
____________________________________________________________________________________
z.
Record the SRC PORT, DEST PORT, SEQUENCE NUM, and ACK NUM values. What is written in the
field to the left of the WINDOW field?
____________________________________________________________________________________
aa. Close the PDU and click Capture/Forward until a PDU returns to the HTTP Client with a checkmark.
ab. Click the PDU envelope and select Inbound PDU Details. How are the port and sequence numbers
different than before?
____________________________________________________________________________________
____________________________________________________________________________________
ac. There is a second PDU of a different color, which HTTP Client has prepared to send to MultiServer. This
is the beginning of the HTTP communication. Click this second PDU envelope and select Outbound PDU
Details.
ad. What information is now listed in the TCP section? How are the port and sequence numbers different from
the previous two PDUs?
____________________________________________________________________________________
____________________________________________________________________________________
ae. Click Back until the simulation is reset.
Step 3: Examine FTP traffic as the clients communicate with the server.
af. In the Simulation Panel, change Edit Filters to display only FTP and TCP.
ag. Click Capture/Forward. Hold your cursor above each PDU until you find one that originates from FTP
Client. Click that PDU envelope to open it.
ah. Click the Inbound PDU Details tab and scroll down to the last section. What is the section labeled?
____________________________________________________________________________________
Are these communications considered to be reliable?
____________________________________________________________________________________
ai. Record the SRC PORT, DEST PORT, SEQUENCE NUM, and ACK NUM values. What is written in the
field to the left of the WINDOW field?
2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public.
Page 3 of 6
Step 4: Examine DNS traffic as the clients communicate with the server.
ap. In the Simulation Panel, change Edit Filters to display only DNS and UDP.
aq. Click the PDU envelope to open it.
ar. Click the Inbound PDU Details tab and scroll down to the last section. What is the section labeled?
____________________________________________________________________________________
Are these communications considered to be reliable? ________________________________
as. Record the SRC PORT and DEST PORT values. Why is there no sequence and acknowledgement
number?
____________________________________________________________________________________
at. Close the PDU and click Capture/Forward until a PDU returns to the DNS Client with a checkmark.
au. Click the PDU envelope and select Inbound PDU Details. How are the port and sequence numbers
different than before?
____________________________________________________________________________________
av. What is the last section of the PDU called?
____________________________________________________________________________________
aw. Click Back until the simulation is reset.
Step 5: Examine email traffic as the clients communicate with the server.
a. In the Simulation Panel, change Edit Filters to display only POP3, SMTP and TCP.
b. Click Capture/Forward. Hold your cursor above each PDU until you find one that originates from E-mail
Client. Click that PDU envelope to open it.
c.
Click the Inbound PDU Details tab and scroll down to the last section. What transport layer protocol does
email traffic use?
____________________________________________________________________________________
2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public.
Page 4 of 6
Click the PDU envelope and select Inbound PDU Details. How are the port and sequence numbers
different than before?
____________________________________________________________________________________
____________________________________________________________________________________
g. Click the Outbound PDU Details tab. How are the port and sequence numbers different from the
previous two results?
____________________________________________________________________________________
____________________________________________________________________________________
h. There is a second PDU of a different color that HTTP Client has prepared to send to MultiServer. This is
the beginning of the email communication. Click this second PDU envelope and select Outbound PDU
Details.
i.
How are the port and sequence numbers different from the previous two PDUs?
____________________________________________________________________________________
____________________________________________________________________________________
j.
What email protocol is associated with TCP port 25? What protocol is associated with TCP port 110?
____________________________________________________________________________________
k.
d. Repeat the netstat command several times until you see only one session still ESTABLISHED. For which
service is this connection still open? _______________________________________________________
Why doesnt this session close like the other three? (Hint: Check the minimized clients)
____________________________________________________________________________________
2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public.
Page 5 of 6
Question
Location
Possible
Points
Step 1
15
Step 2
15
Step 3
15
Step 4
15
Step 5
15
Step 6
25
Total Score
2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public.
Earned
Points
100
Page 6 of 6