Главная
Study mode:
on
1
Intro
2
Stolen Slideshow Template
3
Why am I here
4
Goal
5
Malware Detection
6
Heuristic Detection
7
Application Whitelisting
8
Logging
9
Network Activity
10
Bro Logs
11
Bro Log Formatting
12
Cheat Sheet
13
Elastics
14
MyPorts
15
Events
16
Print
17
New Connection
18
Baseline Report
19
Manual Baseline
20
Parse Log
21
Network Overview
22
Subnet Mask
23
Modify Baseline Report
24
Collect Traffic
25
Alerts
26
Logs
27
Custom Date
28
Create Separate Files
29
parse logs
30
auto baseline
31
run forward script
32
restart
33
Security Onion
34
Use Cases
35
GUI
36
Github
Description:
Explore network baseline techniques for enhancing small security programs in this NolaCon 2017 conference talk. Delve into malware detection, heuristic detection, application whitelisting, and logging strategies. Learn to leverage Bro logs, implement Elasticsearch, and create baseline reports. Discover how to collect traffic, set up alerts, and automate baseline processes. Gain insights into Security Onion's GUI and practical use cases. Access valuable resources on GitHub to strengthen your organization's network security posture.

Arming Small Security Programs - Network Baseline - Matt Domko

Add to list