This video provides an overview of network forensics software tools.
- [Male Speaker] A major network forensic tool is software … that collects logs. … Windows operating systems, or OSs manage their logs through … a program called Event Viewer. … Let's try it. … Expand the Windows logs folder. … Choose security. … This is where you see suspicious activities such as failed … remote access attempts at three in the morning. … A workplace may have hundreds and thousands of computers … to monitor. … Which is why we don't want to open the Event Viewer on each … computer and check its logs manually like what I just did. … A more effective way is to forward the log messages from … its source and to store them at a dedicated log server. … Simple network management protocol or SNMP is the standard … used by Windows to support log collection. … SNMP allows you to enable and agent program on a Windows … machine which in turn monitors and looks for events … to be sent a central log server. … In the SNMP lingo, the messages and SNMP agent generates are … called traps. …
- Goals of network forensics
- Using a syslog and Microsoft Log Parser
- Investigating network traffic
- How protocol analysis works
- ARP and DNS poisoning
- Working with network forensics tools
- Using packet sniffers
Skill Level Beginner
Learning Cryptography and Network Securitywith Lisa Bock1h 45m Intermediate
Insights from a Cybersecurity Professionalwith Mike Chapple32m 15s Intermediate
What you should know2m 11s
1. Understanding Network Forensics
2. Preparing for a Network Forensics Investigation
3. Investigating Network Events
4. Investigating Network Traffic
5. Network Forensics Tools
Next steps1m 15s
- Mark as unwatched
- Mark all as unwatched
Are you sure you want to mark all the videos in this course as unwatched?
This will not affect your course history, your reports, or your certificates of completion for this course.Cancel
Take notes with your new membership!
Type in the entry box, then click Enter to save your note.
1:30Press on any video thumbnail to jump immediately to the timecode shown.
Notes are saved with you account but can also be exported as plain text, MS Word, PDF, Google Doc, or Evernote.