Título: The Tao of network security monitoring : beyond intrusion detection / Richard Bejtlich.
Autor: Bejtlich, Richard
Publicación: Boston : Addison-Wesley, c2005.
Descripción física: XXXIV, 798 p. : il. ; 24 cm.
Tipo de contenido: Texto (visual)
Tipo de medio: sin mediación
Notas: Incluye índicesSumario: Inside you will find in-depth information on the following áreas: - The NSM operational framework and deployement considerations. -How to use a variety of open-source tools (including Sguil, Argus and Ethereal) to mine network traffic for full content,session, statistical, and after data. - Best practices for conducting emergency NSM in an incident response scenario, evaluating monitoring vendors, and developing an MSN architecture. - Develoving and applying knowledge of weapons, tactics, telecommunications, system administration, scripting, and programing for MSN. - The best tool for generating arbitrary packets, exploiting flaws, manipulating traffic, and conducting reconnaissance. Whether you are new to network intrusión detection and incident response, or a computer-security veteran, this book will enable you to quickly develop and apply the skills needed to detect, prevent, and respond to new and emerging threats.
Materia / lugar / evento: Ciberdefensa Seguridad informática Protección de datos Internet
CDU: 004.05
Números normalizados: ISBN 0321246772ISBN 978-0-321-24677-6
Tipo de publicación:
Libros
Datos de ingreso:
Fuente de ingreso: Compra
Encuadernación:
Bibliografía de Trabajos de fin de grado
Préstamo:
Disponible