9

Stream Inspectors

Network traffic is comprised of packets or frames, which are the fundamental units of data transmission. These packets originate from a source endpoint and are transmitted to one or more destination endpoints. However, the individual packets are usually part of something bigger. For instance, when a web server communicates with a browser using HTTP, the data is divided into manageable sizes and sent as packets across the network. To conduct meaningful analysis, it is necessary to examine the data units of the underlying protocol, such as HTTP, rather than focusing solely on individual packets.

The analysis of network traffic becomes more complex due to the presence of numerous servers and clients concurrently exchanging data. ...

Get IDS and IPS with Snort 3 now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.