Course Discription |
:
This course concentrates on a number of important Cyber Defense Monitoring techniques and
solutions. The course focuses on event logging and collection with syslog protocol, regular
expression language and its applications to system/network monitoring, event correlation, and
finally network intrusion detection and prevention. The course also discusses a number of opensource monitoring solutions, including UNIX rsyslog package, Simple Event Correlator, and Snort
IDS/IPS. |