Главная
Study mode:
on
1
Intro
2
About Me
3
What is NSM?
4
IDS vs NSM Scenario
5
Challenges of NSM in the Enterprise
6
Compliance.
7
Convincing Management
8
Dear Network Team, It's a TAP!
9
Sensor Placement
10
I feel the need.. the need for speed
11
Flow Based Load Balancing
12
Large Scale Enterprise Deployment
13
Hardware sizing?!?
14
Hardware Recommendations - 100Mbps
15
Hardware Recommendations - 2Gbps
16
Knobs you can turn
17
Dealing with the Data
18
Security Onion Challenges
19
Security Onion Tips
20
User Management
21
Rules Magic
22
Bro Intel Framework
23
Tips and Tricks with Onion Salt
24
Onion Salt Roadmap
Description:
Explore enterprise-level Network Security Monitoring (NSM) implementation using Security Onion in this conference talk from BSides Augusta 2014. Learn about NSM fundamentals, its advantages over traditional IDS, and strategies for overcoming challenges in large-scale deployments. Discover how to address compliance issues, gain management buy-in, and collaborate with network teams for optimal sensor placement. Delve into performance optimization techniques, including flow-based load balancing and hardware sizing recommendations for various network speeds. Gain insights on data management, Security Onion customization, and advanced features like user management, rule configuration, and the Bro Intel Framework. Conclude with valuable tips, tricks, and future developments for Security Onion, empowering you to scale your NSM capabilities effectively across enterprise environments.

Scaling Security Onion to the Enterprise - Lecture 102

Add to list
0:00 / 0:00