This document provides an overview of using Wireshark and tcpdump to monitor network traffic. It begins with an introduction to the motivation for network monitoring. It then covers the tools tcpdump, tshark, and Wireshark. Examples are given of using tcpdump and tshark on the command line to capture traffic. The document demonstrates Wireshark's graphical user interface and features for analyzing captured packets, including display filters, following TCP streams, conversations, endpoint statistics, and flow graphs. It concludes with tips for improving Wireshark performance and using grep to further analyze saved packet files.