Bro network security monitor 2018 pass the salt workshop 1.
Bro network security monitor training.
The bro network security monitor abstract bro is an open source network security platform that illuminates your network s activity in detail with the stability and flexibility for production deployment at scale.
It is released under the bsd license.
Bro events and logs.
While focusing on network security monitoring bro provides a comprehensive platform for more general network traffic analysis as well.
Overview 2 introduction to bro.
The easy to use setup wizard allows you to build an army of distributed sensors for your enterprise in minutes.
It was first developed in 1994 by vern paxson and was originally named in reference to george orwell s big brother from his novel nineteen eighty four it can be used as a network intrusion detection system nids but with additional live analysis of network events.
Bro reduces incoming packet streams into higher level events and applies customizable scripts to determine the necessary course of.
It s based on ubuntu and contains snort suricata bro sguil squert elsa xplico networkminer and many other security tools.
Security onion is a linux distro for ids intrusion detection and nsm network security monitoring.
This is an introductory workshop you probably won t hear see new things if you have.
Bro is a powerful network analysis framework that is much different from the typical ids you may know.