The practice of network security monitoring : understanding incident detection and response /

Sparad:
Bibliografiska uppgifter
Huvudskapare: Bejtlich, Richard
Materialtyp: Elektronisk E-bok
Språk:engelska
Publicerad: San Francisco : No Starch Press, 2013.
Ämnen:
Länkar:An electronic book accessible through the World Wide Web; click to view
Taggar: Lägg till en tagg
Inga taggar, Lägg till första taggen!
Innehållsförteckning:
  • Foreword / by Todd Heberlein
  • Preface
  • Part I. Getting Started
  • The Rationale
  • Collecting Traffic
  • Part II. Security Onion Deployment
  • Standalone Deployment
  • Distributed Deployment
  • Housekeeping
  • Part III. Tools
  • Command Line Packet Analysis Tools
  • Graphical Packet Analysis Tools
  • Consoles
  • Part III. NSM in Action
  • Collection, Analysis, Escalation, and Resolution
  • Server-Side Compromise
  • Client-Side Compromise
  • Extending SO
  • Proxies and Checksums
  • Conclusion
  • Appendix A: Security Onion Scripts and Configuration / by Doug Burks.