The practice of network security monitoring : understanding incident detection and response /

Gespeichert in:
Bibliographische Detailangaben
1. Verfasser: Bejtlich, Richard
Format: Elektronisch E-Book
Sprache:Englisch
Veröffentlicht: San Francisco : No Starch Press, 2013.
Schlagworte:
Online-Zugang:An electronic book accessible through the World Wide Web; click to view
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Inhaltsangabe:
  • Foreword / by Todd Heberlein
  • Preface
  • Part I. Getting Started
  • The Rationale
  • Collecting Traffic
  • Part II. Security Onion Deployment
  • Standalone Deployment
  • Distributed Deployment
  • Housekeeping
  • Part III. Tools
  • Command Line Packet Analysis Tools
  • Graphical Packet Analysis Tools
  • Consoles
  • Part III. NSM in Action
  • Collection, Analysis, Escalation, and Resolution
  • Server-Side Compromise
  • Client-Side Compromise
  • Extending SO
  • Proxies and Checksums
  • Conclusion
  • Appendix A: Security Onion Scripts and Configuration / by Doug Burks.