The practice of network security monitoring : understanding incident detection and response /

Uloženo v:
Podrobná bibliografie
Hlavní autor: Bejtlich, Richard
Médium: Elektronický zdroj E-kniha
Jazyk:angličtina
Vydáno: San Francisco : No Starch Press, 2013.
Témata:
On-line přístup:An electronic book accessible through the World Wide Web; click to view
Tagy: Přidat tag
Žádné tagy, Buďte první, kdo vytvoří štítek k tomuto záznamu!
Obsah:
  • Foreword / by Todd Heberlein
  • Preface
  • Part I. Getting Started
  • The Rationale
  • Collecting Traffic
  • Part II. Security Onion Deployment
  • Standalone Deployment
  • Distributed Deployment
  • Housekeeping
  • Part III. Tools
  • Command Line Packet Analysis Tools
  • Graphical Packet Analysis Tools
  • Consoles
  • Part III. NSM in Action
  • Collection, Analysis, Escalation, and Resolution
  • Server-Side Compromise
  • Client-Side Compromise
  • Extending SO
  • Proxies and Checksums
  • Conclusion
  • Appendix A: Security Onion Scripts and Configuration / by Doug Burks.