Welcome to Scribd, the world's digital library. Read, publish, and share books and documents. See more
Standard view
Full view
of .
Save to My Library
Look up keyword or section
Like this

Table Of Contents

What to Expect from this Session
Scenario: Blanco Wireless
Monitor Against Defined Policies
More Policy Monitoring Examples
Example: FTP Root Login
Example: SSH root login message
Blanco Wireless: Policies
Do You Have a Self DefeatingNetwork?
What is Meant by ‘Telemetry’?
Network Telemetry -What’s it Do For Me?
Network Telemetry -Time Synchronisation
What’s NetFlow?
Elements of a NetflowPacket
NetFlowCollection at Cisco
OSU Flowtools
OSU FlowtoolsExample
Custom NetFlowReport Generator
Know Thy Subnets
Network Telemetry -MRTG/RRDTool
Blanco Wireless: Network
1. Determine Which Assets to Monitor
Recommendation: Best Monitoring Targets
2. Determine Components to Monitor
Blanco Wireless: Monitoring Targets
Choosing Event Sources: What to Consider
Choosing Event Sources: What to Consider (cont.)
Three Best Event Sources
Logging has Performance Impact
Searching Through Logs w/Splunk
Searching Through Logs w/Sawmill
Blanco Wireless: Event Sources
IDS/IPS Refresher
IDS -Basic Deployment Steps
Enterprise Data Centre IPS/IDS
Setup IDS
Tune IDS
IDS Tuning
Tune IDS Using Sensor
Tune IDS Using Your SIM
Custom Signatures
Feed Netflowto SIMsand Other Tools
Host Syslog
Number of Services/Protocols
Enterprise Data Centre Monitoring
False Positives -Examples (Cisco IPS)
Blanco Wireless: Getting Netflow
Blanco Wireless: Using IDS
Maintain Documented Commitments
Maintain IDS Feeds
Verify Feeds
Blanco Wireless: Maintenance
Lessons Learned
Complete Your Online Session Evaluation
0 of .
Results for:
No results containing your search query
P. 1
SEC-2006 Inside the Peimeter 6 Steps to Improving Your Security Monitoring

SEC-2006 Inside the Peimeter 6 Steps to Improving Your Security Monitoring

Ratings: (0)|Views: 59 |Likes:
Published by HighFreak1c

More info:

Published by: HighFreak1c on Jun 18, 2010
Copyright:Attribution Non-commercial


Read on Scribd mobile: iPhone, iPad and Android.
download as PDF, TXT or read online from Scribd
See more
See less





You're Reading a Free Preview
Pages 5 to 43 are not shown in this preview.

Activity (6)

You've already reviewed this. Edit your review.
1 hundred reads
enisb liked this
ms13395792 liked this
ms13395792 liked this
saikyawhtike liked this

You're Reading a Free Preview

/*********** DO NOT ALTER ANYTHING BELOW THIS LINE ! ************/ var s_code=s.t();if(s_code)document.write(s_code)//-->