December 2020
Intermediate to advanced
688 pages
21h 18m
English
Network Infrastructure Device Telemetry and Analysis
This chapter covers the following topics:
Syslog in Large-Scale Environments
Next-Generation Firewall and Next-Generation IPS Logs
This chapter covers different network and host security telemetry solutions. Network telemetry and logs from network infrastructure devices such as firewalls, routers, and switches can prove useful when you’re proactively detecting or responding to a security incident. Logs from user endpoints can help you not only for attribution if they are part of a malicious activity but also for victim identification.