LinuxCBT - NIDS Edition

Član
Učlanjen(a)
31.12.2011
Poruka
4.869
f4bb2b93c7c7d6a0116768ff131a7511.jpg

LinuxCBT - NIDS Edition Training | 1.21 GB


Course Objective

Network Intrusion Detection System (NIDS) Security - Module V

Snort NIDS - Installation
Peruse the LinuxCBT Security Edition classroom network topology
Download Snort
Import G/PGP public key and verify package integrity
Identify & download key Snort dependencies
Install current libpcap - Packet Capture Library
Establish security configuration baseline

Snort NIDS - Sniffer Mode
Discuss sniffer mode concepts & applications
Sniff IP packet headers - layer-3/4
Sniff data-link headers - layer-2
Sniff application payload - layer-7
Sniff application/ip packet headers/data-link headers - all layers except physical
Examine packets & packet loss
Sniff traffic traversing interesting interfaces
Sniff clear-text traffic
Sniff encrypted streams

Snort NIDS - Logging Mode
Discuss logging mode concepts & applications
Log traffic using default PCAP/TCPDump format
Log traffic using ASCII mode & examine output
Discuss directory structure created by ASCII logging mode
Control verbosity of ASCII logging mode & examine output
Enhance packet logging analysis by defaulting to binary logging
Discuss default nomenclature for binary/TCPDump files
Alter binary output options
Use Snort NIDS to read binary/TCPDump files

Snort NIDS - Berkeley Packet Filters (BPFs)
Explain the advantages to utilizing BPFs
Discuss BPF directional, type, and protocol qualifiers
Identify clear-text based network applications and define appropriate BPFs
Execute Snort NIDS in sniffer mode with BPFs enabled to match interesting traffic
Log to the active pseudo-terminal console and examine the packet flows
Combine BPF qualifiers to increase packet-matching capabilities
Use logical operators to define more flexible BPFs
Read binary TCPDump files using Snort & BPFs
Execute Snort NIDS in logging/daemon mode

Snort NIDS - Cisco Switch Configuration
Examine the current network configuration
Identify Snort NIDS sensors and centralized DBMS Server
Create multiple VLANs on the Cisco Switch
Secure the Cisco Switch configuration
Isolate internal and external hosts, sensors and DBMS systems
Configure SPAN - Port Mirroring for internal and external Snort NIDS Sensors
Examine internal and external packet flows

Snort NIDS - Network Intrusion Detection System (NIDS) Mode
Discuss NIDS concepts & applications
Prepare /etc/snort - configuration directory for NIDS operation
Explore the snort.conf NIDS configuration file
Discuss all snort.conf sections
Download & install community rules
Execute Snort in NIDS mode with TCPDump compliant output plugin
Download & install Snort Vulnerability Research Team (VRT) rules
Compare & contrast community rules to VRT rules

Snort NIDS - Output Plugin - Barnyard Configuration
Discuss features & benefits
Configure Syslog based logging and examine results
Configure Snort to log sequentially to multiple output locations
Implement unified binary output logging to enhance performance
Discuss concepts & features associated with post-processing Snort logs
Download and install current barnyard post-processor
Use barnyard to post-process logs to multiple output destinations

Snort NIDS - BASE - MySQL® Implementation
Discuss benefits of centralized console reporting for 1 or more Snort sensors
Re-compile Snort on both sensors to support MySQL logging
Configure MySQL on Database Management System (DBMS) Host
Implement Snort database schema on DBMS Host
Configure Snort to log output to MySQL DBMS Host
Confirm output logging to the MySQL DBMS Host
Prepare DBMS Host for BASE console installation
Install BASE and complete schema extension
Peruse BASE interface

Snort® NIDS - Rules Configuration & Updates
Discuss the concept of rules as related to Snort NIDS
Examine Snort rule syntax
Peruse pre-defined Snort rules
Download & configure oinkmaster to automatically update Snort rules
Confirm oinkmaster operation

With a Premium account you can download files having Fullspeed !
Download from Uploaded
Kod:
http://uploaded.net/file/1ll8why9/LinuxCBT.NIDS.Edition.part01.rar
http://uploaded.net/file/432jm7sx/LinuxCBT.NIDS.Edition.part02.rar
http://uploaded.net/file/1bwtremr/LinuxCBT.NIDS.Edition.part03.rar
http://uploaded.net/file/6wy4h82t/LinuxCBT.NIDS.Edition.part04.rar
http://uploaded.net/file/te1mjyw9/LinuxCBT.NIDS.Edition.part05.rar
http://uploaded.net/file/ynrfw8h7/LinuxCBT.NIDS.Edition.part06.rar
http://uploaded.net/file/4krpvad6/LinuxCBT.NIDS.Edition.part07.rar
http://uploaded.net/file/g27vjo8y/LinuxCBT.NIDS.Edition.part08.rar
http://uploaded.net/file/t054tko7/LinuxCBT.NIDS.Edition.part09.rar
http://uploaded.net/file/cb7yycmz/LinuxCBT.NIDS.Edition.part10.rar
http://uploaded.net/file/geg0rlc4/LinuxCBT.NIDS.Edition.part11.rar
http://uploaded.net/file/9a8qvxh2/LinuxCBT.NIDS.Edition.part12.rar
http://uploaded.net/file/x6nqurdn/LinuxCBT.NIDS.Edition.part13.rar
http://uploaded.net/file/bxahi19t/LinuxCBT.NIDS.Edition.part01.rar
http://uploaded.net/file/jsatdsw9/LinuxCBT.NIDS.Edition.part01.rar
http://uploaded.net/file/128rwji5/LinuxCBT.NIDS.Edition.part02.rar
http://uploaded.net/file/74satz6l/LinuxCBT.NIDS.Edition.part02.rar
http://uploaded.net/file/oux3agbu/LinuxCBT.NIDS.Edition.part03.rar
http://uploaded.net/file/kko7m8xw/LinuxCBT.NIDS.Edition.part03.rar
http://uploaded.net/file/ti0ijfzp/LinuxCBT.NIDS.Edition.part04.rar
Download from Lumfile
Kod:
http://lumfile.com/ueot78oaeo0a/LinuxCBT.NIDS.Edition.part01.rar
http://lumfile.com/or02mzzdvvyo/LinuxCBT.NIDS.Edition.part02.rar
http://lumfile.com/ecd670d8g9sm/LinuxCBT.NIDS.Edition.part03.rar
http://lumfile.com/krxcthrx933t/LinuxCBT.NIDS.Edition.part04.rar
http://lumfile.com/9kiccpa8i5k1/LinuxCBT.NIDS.Edition.part05.rar
http://lumfile.com/apzfw2dbj80t/LinuxCBT.NIDS.Edition.part06.rar
http://lumfile.com/94ewum34kd2d/LinuxCBT.NIDS.Edition.part07.rar
http://lumfile.com/3ky54ywcbi06/LinuxCBT.NIDS.Edition.part08.rar
http://lumfile.com/kzt9385ix68u/LinuxCBT.NIDS.Edition.part09.rar
http://lumfile.com/c7dp14c5zeda/LinuxCBT.NIDS.Edition.part10.rar
http://lumfile.com/i4mbimuhkx6f/LinuxCBT.NIDS.Edition.part11.rar
http://lumfile.com/nwf581j8s2fo/LinuxCBT.NIDS.Edition.part12.rar
http://lumfile.com/zqw1ptdxg3ub/LinuxCBT.NIDS.Edition.part13.rar
 
Natrag
Top