Cover image for
Title:
The practice of network security monitoring : understanding incident detection and response / by Richard Bejtlich.
Author:
Bejtlich, Richard.
Publication Information:
San Francisco : No Starch Press, [2013]
Call Number:
TK5105.59 .B436 2013
ISBN:
9781593275099
Physical Description:
xxx, 341 pages ; 24 cm
Contents:
Foreword / by Todd Heberlein -- Preface -- Part I. Getting Started -- The Rationale -- Collecting Traffic -- Part II. Security Onion Deployment -- Standalone Deployment -- Distributed Deployment -- Housekeeping -- Part III. Tools -- Command Line Packet Analysis Tools -- Graphical Packet Analysis Tools -- Consoles -- Part III. NSM in Action -- Collection, Analysis, Escalation, and Resolution -- Server-Side Compromise -- Client-Side Compromise -- Extending SO -- Proxies and Checksums -- Conclusion -- Appendix A: Security Onion Scripts and Configuration / by Doug Burks.
Personal Author:
Copies: