Sanders, Chris

Applied network security monitoring: collection, detection, and analysis / Chris Sanders, Jason Smith - 496 páginas: ilustraciones; 27 cm

The practice of applied network security monitoring - Planning data collection - The sensor platform - Session data - Full packet capture data - Packet string data - Detection mechanisms, indicators of compromise, and signatures - Reputation-based detection - Signature-based detection with snort and suricata - The bro platform - Anomaly-based detection with statistical data - Using canary honeypots for detection - Packet analysis - Friendly and threat intelligence - The analysis process - Security onion control scripts - Important security onion files and directories - Packet headers - Decimal / Hex / ASCII Conversion Chart.



9780124172081


Seguridad de la información
Bases de datos--Seguridad
Seguridad informática

005.8 / S215ap 2014