VSkills
VSkills Logo

Certified Snort Professional 

  • Offered byVSkills

Certified Snort Professional
 at 
VSkills 
Overview

Various public and private companies also need Snort Professionals for their networking, security or IT departments

Duration

13 hours

Total fee

3,499

Mode of learning

Online

Credential

Certificate

Certified Snort Professional
 at 
VSkills 
Highlights

  • Earn a certificate of completion from Vskills
  • Get Lifelong e-learning access
Details Icon

Certified Snort Professional
 at 
VSkills 
Course details

Who should do this course?
  • For professionals and graduates wanting to excel in their chosen areas
  • For those who are already working and would like to take certification for further career progression
More about this course
  • Vskills certification for Snort Professional assesses the candidate as per the company’s need for network security and assessment
  • The certification tests the candidates on various areas like installing and running Snort, building IDS, Plug-ins, logging, alerts, log analysis, rules, signatures, preprocessing Snortsnarf and other usage of Snort

Certified Snort Professional
 at 
VSkills 
Curriculum

Installation and Optimization

Introduction

Installing Snort from Source

Installing Snort

Upgrading Snort

Monitoring Multiple Network Interfaces

Invisibly Tapping a Hub

Invisibly Sniffing Between Two Network Points

Invisibly Sniffing MB Ethernet

Sniffing Gigabit Ethernet

Tapping a Wireless Network

Positioning Your IDS Sensors

Capturing and Viewing Packets

Logging Packets That Snort Captures

Running Snort to Detect Intrusions

Reading a Saved Capture File

Running Snort as a Linux Daemon

Running Snort as a Windows Service

Capturing Without Putting the Interface into Promiscuous Mode

Reloading Snort Settings

Debugging Snort Rules

Building a Distributed IDS

Logging, Alerts, and Output Plug-ins

Introduction

Logging to a File Quickly

Logging Only Alerts

Logging to a CSV File

Logging to a Specific File

Logging to Multiple Locations

Logging in Binary

Viewing Traffic While Logging

Logging Application Data

Logging to the Windows Event Viewer

Logging Alerts to a Database

Installing and Configuring MySQL

Configuring MySQL for Snort

Using PostgreSQL with Snort and ACID

Logging in PCAP Format (TCPDump)

Logging to Email

Logging to a Pager or Cell Phone

Optimizing Logging

Reading Unified Logged Data

Generating Real-Time Alerts

Ignoring Some Alerts

Logging to System Logfiles

Fast Logging

Logging to a Unix Socket

Not Logging

Prioritizing Alerts

Capturing Traffic from a Specific TCP Session

Killing a Specific Session

Rules and Signatures

Introduction

How to Build Rules

Keeping the Rules Up to Date

Basic Rules You Shouldn't Leave Home Without

Dynamic Rules

Detecting Binary Content

Detecting Malware

Detecting Viruses

Detecting IM

Detecting PP

Detecting IDS Evasion

Countermeasures from Rules

Testing Rules

Optimizing Rules

Blocking Attacks in Real Time

Suppressing Rules

Thresholding Alerts

Excluding from Logging

Carrying Out Statistical Analysis

Preprocessing

Introduction

Detecting Stateless Attacks and Stream Reassembly

Detecting Fragmentation Attacks and Fragment Reassembly with Frag

Detecting and Normalizing HTTP Traffic

Decoding Application Traffic

Detecting Port Scans and Talkative Hosts

Getting Performance Metrics

Experimental Preprocessors

Writing Your Own Preprocessor

Administrative Tools

Introduction

Managing Snort Sensors

Installing and Configuring IDScenter

Installing and Configuring SnortCenter

Installing and Configuring Snortsnarf

Running Snortsnarf Automatically

Installing and Configuring ACID

Securing ACID

Installing and Configuring Swatch

Installing and Configuring Barnyard

Administering Snort with IDS Policy Manager

Integrating Snort with Webmin

Administering Snort with HenWen

Newbies Playing with Snort Using EagleX

Log Analysis

Introduction

Generating Statistical Output from Snort Logs

Generating Statistical Output from Snort Databases

Performing Real-Time Data Analysis

Generating Text-Based Log Analysis

Creating HTML Log Analysis Output

Tools for Testing Signatures

Analyzing and Graphing Logs

Analyzing Sniffed (Pcap) Traffic

Writing Output Plug-ins

Other Uses

Introduction

Monitoring Network Performance

Logging Application Traffic

Recognizing HTTP Traffic on Unusual Ports

Creating a Reactive IDS

Monitoring a Network Using Policy-Based IDS

Port Knocking

Obfuscating IP Addresses

Passive OS Fingerprinting

Working with Honeypots and Honeynets

Performing Forensics Using Snort

Snort and Investigations

Snort as Legal Evidence in the US

Snort as Evidence in the UK

Snort as a Virus Detection Tool

Staying Legal

Other courses offered by VSkills

3.5 K
13 hours
– / –
3.5 K
15 hours
– / –
3.5 K
30 hours
– / –
View Other 270 CoursesRight Arrow Icon
qna

Certified Snort Professional
 at 
VSkills 

Student Forum

chatAnything you would want to ask experts?
Write here...