I want to understand how Wireshark identifies the L7 applications correctly which are not running on standard port?
I want to understand how Wireshark identifies the L7 applications correctly? I had my web server listening to port 8888, and I did wget http:server:8888 and got response. Wireshark correctly identified the application as http. How this is achieved?