The Securing Cisco Networks with Open Source Snort (SSFSNORT) training shows you how to deploy a network intrusion detection system based on Snort. Through a combination of expert instruction and hands-on practice, you will learn how to install, configure, operate, and manage a Snort system. You will also explore rules writing with an overview of basic options, advanced rules writing, how to configure PulledPork, and how to use OpenAppID to provide protection of your network from malware. You will learn techniques of tuning and performance monitoring, traffic flow through Snort rules, and more.
How You'll Benefit
This training will help you:
Learn how to implement Snort, an open-source, rule-based, intrusion detection and prevention system
Gain leading-edge skills for high-demand responsibilities focused on security
Earn 20 CE credits towards recertification
Live Lab:
Connecting to the Lab Environment
Snort Installation
Snort Operation
Snort Intrusion Detection Output
PulledPork Installation
Configuring Variables
Reviewing Preprocessor Configurations
Inline Operation
Basic Rule Syntax and Usage
Advanced Rule Options
OpenAppID Configuration
Tuning Snort