


Instant OSSEC Host-based Intrusion Detection电子书

售       价:¥

5人正在读 | 0人评论 9.8

作       者:Brad Lhotsky

出  版  社:Packt Publishing


字       数:44.1万

所属分类: 进口书 > 外文原版书 > 电脑/网络



  • 读书简介
  • 目录
  • 累计评论(0条)
  • 读书简介
  • 目录
  • 累计评论(0条)
Filled with practical, step-by-step instructions and clear explanations for the most important and useful tasks. A fast-paced, practical guide to OSSEC-HIDS that will help you solve host-based security problems. This book is great for anyone concerned about the security of their servers-whether you are a system administrator, programmer, or security analyst, this book will provide you with tips to better utilize OSSEC-HIDS. Whether you’re new to OSSEC-HIDS or a seasoned veteran, you’ll find something in this book you can apply today! This book assumes some knowledge of basic security concepts and rudimentary *ing experience.

Instant OSSEC Host-based Intrusion Detection

Instant OSSEC Host-based Intrusion Detection


About the Author

About the Reviewers


Support files, eBooks, discount offers and more

Why Subscribe?

Free Access for Packt account holders


What this book covers

What you need for this book

Official documentation

The community

Commercial support

Who this book is for


Reader feedback

Customer support

Downloading the example code




1. Instant OSSEC Host-based Intrusion Detection

Installing OSSEC (Simple)

Getting ready

How to do it...

How it works...

There's more…

Binary installations

Starting OSSEC at boot

Configuring an OSSEC server (Simple)

Getting ready

How to do it...

How it works...

Getting agents to communicate (Simple)

Getting ready

How to do it...

How it works...

There's more...

Managing agent keys automatically

Writing your own rules (Simple)

Getting ready

How to do it...

How it works...

There's more...

Decoding event data

Detecting SSH brute-force attacks (Intermediate)

Getting ready

How to do it...

How it works...

Configuring the alerts (Simple)

Getting ready

How to do it...

How it works...

There's more...

What is rule 1002 and why is it spamming me?

Playing nice with others

File integrity monitoring (Simple)

Getting ready

How to do it...

How it works...

There's more...

Monitoring the Windows registry

Working with prelinking

Monitoring command output (Intermediate)

Getting ready

How to do it...

How it works...

Detecting rootkits and anomalies (Simple)

Getting ready

How to do it...

How it works...

There's more...

Auditing your systems

Increasing paranoia

Introducing active response (Intermediate)

Getting ready

How to do it...

How it works...

Verifying alerts with active response (Advanced)

Getting ready

How to do it...

How it works...

累计评论(0条) 0个书友正在讨论这本书 发表评论




