Network Security Through Data Analysis: Building Situational Awareness (Paperback)
暫譯: 透過數據分析的網路安全:建立情境意識 (平裝本)
Michael Collins
- 出版商: O'Reilly
- 出版日期: 2014-02-23
- 定價: $1,650
- 售價: 9.5 折 $1,568
- 語言: 英文
- 頁數: 348
- 裝訂: Paperback
- ISBN: 1449357903
- ISBN-13: 9781449357900
-
相關分類:
Data Science、資訊安全
立即出貨(限量) (庫存=2)
買這商品的人也買了...
-
$880$695 -
$880$695 -
$550$435 -
$450$428 -
$620$527 -
$780$616 -
$520$411 -
$480$379 -
$550$468 -
$580$458 -
$400$380 -
$450$356 -
$580$493 -
$650$585 -
$580$458 -
$980$774 -
$500$395 -
$680$537 -
$360$284 -
$780$616 -
$500$395 -
$500$395 -
$580$458 -
$520$411 -
$690$538
相關主題
商品描述
Traditional intrusion detection and logfile analysis are no longer enough to protect today’s complex networks. In this practical guide, security researcher Michael Collins shows you several techniques and tools for collecting and analyzing network traffic datasets. You’ll understand how your network is used, and what actions are necessary to protect and improve it.
Divided into three sections, this book examines the process of collecting and organizing data, various tools for analysis, and several different analytic scenarios and techniques. It’s ideal for network administrators and operational security analysts familiar with scripting.
- Explore network, host, and service sensors for capturing security data
- Store data traffic with relational databases, graph databases, Redis, and Hadoop
- Use SiLK, the R language, and other tools for analysis and visualization
- Detect unusual phenomena through Exploratory Data Analysis (EDA)
- Identify significant structures in networks with graph analysis
- Determine the traffic that’s crossing service ports in a network
- Examine traffic volume and behavior to spot DDoS and database raids
- Get a step-by-step process for network mapping and inventory
商品描述(中文翻譯)
傳統的入侵偵測和日誌檔分析已經無法滿足當今複雜網路的保護需求。在這本實用指南中,安全研究員 Michael Collins 向您展示了幾種收集和分析網路流量數據集的技術和工具。您將了解您的網路如何被使用,以及需要採取哪些行動來保護和改善它。
本書分為三個部分,探討數據的收集和組織過程、各種分析工具,以及幾種不同的分析場景和技術。這本書非常適合熟悉腳本編寫的網路管理員和運營安全分析師。
- 探索用於捕獲安全數據的網路、主機和服務感測器
- 使用關聯式資料庫、圖形資料庫、Redis 和 Hadoop 儲存數據流量
- 使用 SiLK、R 語言和其他工具進行分析和可視化
- 通過探索性數據分析 (Exploratory Data Analysis, EDA) 偵測異常現象
- 使用圖形分析識別網路中的重要結構
- 確定網路中穿越服務埠的流量
- 檢查流量量和行為以發現 DDoS 和資料庫襲擊
- 獲得網路映射和清單的逐步流程