Network & Host Analysis: Network Analysis Formats

placeholder

“A variety of formats and protocols are used to help manage networks. Knowing what you have at your disposal to integrate into your operational duties is essential in defensive CyberOps. In this course you ll learn the format and tools required to manage operate and analyze your networks.
You ll start by recognizing the purpose and characteristics of NetFlow and IPFIX network flow protocols. You ll then outline how NetFlow is used to baseline a network. Next you ll identify the importance of logging access control and event queues. You ll examine techniques for tapping network traffic and collecting and forwarding logs. You ll explore SNMP the PCAP format and whitelisting. Finally you ll set up Wireshark to detect potentially harmful events and import and export captured traffic in the PCAP format.”