Join Amazon Prime and get unlimited Free One-Day Delivery. Already a member? Sign in.

 

or
Sign in to turn on 1-Click ordering.
 
   
More Buying Choices
34 used & new from £26.23

Have one to sell? Sell yours here
 
   
The Tao of Network Security Monitoring: Beyond Intrusion Detection
 
See larger image
 

The Tao of Network Security Monitoring: Beyond Intrusion Detection (Paperback)

by Richard Bejtlich (Author)
4.5 out of 5 stars See all reviews (2 customer reviews)
RRP: £37.99
Price: £32.29 & this item Delivered FREE in the UK with Super Saver Delivery. See details and conditions
You Save: £5.70 (15%)
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
In stock.
Dispatched from and sold by Amazon.co.uk. Gift-wrap available.

Only 2 left in stock--order soon (more on the way).

Want guaranteed delivery by Tuesday, July 14? Choose Express delivery at checkout. See Details
26 new from £26.23 8 used from £27.98

Frequently Bought Together

The Tao of Network Security Monitoring: Beyond Intrusion Detection + Extrusion Detection: Security Monitoring for Internal Intrusions + Real Digital Forensics: Computer Security and Incident Response
Price For All Three: £93.40

Show availability and shipping details


Customers Who Bought This Item Also Bought

Extrusion Detection: Security Monitoring for Internal Intrusions

Extrusion Detection: Security Monitoring for Internal Intrusions

by Richard Bejtlich
£30.59
Malware Forensics: Investigating and Analyzing Malicious Code

Malware Forensics: Investigating and Analyzing Malicious Code

by Cameron H. Malin
£37.95
Real Digital Forensics: Computer Security and Incident Response

Real Digital Forensics: Computer Security and Incident Response

by Keith J. Jones
5.0 out of 5 stars (1)  £30.52
Windows Forensic Analysis DVD Toolkit with DVD

Windows Forensic Analysis DVD Toolkit with DVD

by Harlan Carvey
5.0 out of 5 stars (1)  £36.10
Nmap Network Scanning: The Official Nmap Project Guide to Network Discovery and Security Scanning

Nmap Network Scanning: The Official Nmap Project Guide to Network Discovery and Security Scanning

by Gordon Lyon
5.0 out of 5 stars (4)  £26.49
Explore similar items

Product details

  • Paperback: 832 pages
  • Publisher: Addison Wesley; illustrated edition edition (22 Jul 2004)
  • Language English
  • ISBN-10: 0321246772
  • ISBN-13: 978-0321246776
  • Product Dimensions: 23.4 x 17.8 x 3.8 cm
  • Average Customer Review: 4.5 out of 5 stars See all reviews (2 customer reviews)
  • Amazon.co.uk Sales Rank: 193,532 in Books (See Bestsellers in Books)
  • See Complete Table of Contents

Customers Viewing This Page May Be Interested in These Sponsored Links

  (What is this?)
Network Monitoring Tool
   OpManager.ManageEngine.com    Trusted by over 8000 businesses 38 MB. Multi-OS support. Free Trial 
Free Netflow Analysis
   www.teneo.net/plixer    Manage & Report Traffic & Bandwidth Free Eval -Learn Who What Why When 
SNMPc Network Monitoring
   www.castlerock.com    Comprehensive network monitoring and reporting tool (Free Trial) 
  
 

Product Description

Product Description

"The book you are about to read will arm you with the knowledge you need to defend your network from attackers—both the obvious and the not so obvious.... If you are new to network security, don't put this book back on the shelf! This is a great book for beginners and I wish I had access to it many years ago. If you've learned the basics of TCP/IP protocols and run an open source or commercial IDS, you may be asking 'What's next?' If so, this book is for you."

         —Ron Gula, founder and CTO, Tenable Network Security, from the Foreword

"Richard Bejtlich has a good perspective on Internet security—one that is orderly and practical at the same time. He keeps readers grounded and addresses the fundamentals in an accessible way."

         —Marcus Ranum, TruSecure

"This book is not about security or network monitoring: It's about both, and in reality these are two aspects of the same problem. You can easily find people who are security experts or network monitors, but this book explains how to master both topics."

         —Luca Deri, ntop.org

"This book will enable security professionals of all skill sets to improve their understanding of what it takes to set up, maintain, and utilize a successful network intrusion detection strategy."

         —Kirby Kuehl, Cisco Systems

Every network can be compromised. There are too many systems, offering too many services, running too many flawed applications. No amount of careful coding, patch management, or access control can keep out every attacker. If prevention eventually fails, how do you prepare for the intrusions that will eventually happen?

Network security monitoring (NSM) equips security staff to deal with the inevitable consequences of too few resources and too many responsibilities. NSM collects the data needed to generate better assessment, detection, and response processes—resulting in decreased impact from unauthorized activities.

In The Tao of Network Security Monitoring, Richard Bejtlich explores the products, people, and processes that implement the NSM model. By focusing on case studies and the application of open source tools, he helps you gain hands-on knowledge of how to better defend networks and how to mitigate damage from security incidents.

Inside, you will find in-depth information on the following areas.

  • The NSM operational framework and deployment considerations.
  • How to use a variety of open-source tools—including Sguil, Argus, and Ethereal—to mine network traffic for full content, session, statistical, and alert data.
  • Best practices for conducting emergency NSM in an incident response scenario, evaluating monitoring vendors, and deploying an NSM architecture.
  • Developing and applying knowledge of weapons, tactics, telecommunications, system administration, scripting, and programming for NSM.
  • The best tools for generating arbitrary packets, exploiting flaws, manipulating traffic, and conducting reconnaissance.

Whether you are new to network intrusion detection and incident response, or a computer-security veteran, this book will enable you to quickly develop and apply the skills needed to detect, prevent, and respond to new and emerging threats.



From the Back Cover

"The book you are about to read will arm you with the knowledge you need to defend your network from attackers—both the obvious and the not so obvious.... If you are new to network security, don't put this book back on the shelf! This is a great book for beginners and I wish I had access to it many years ago. If you've learned the basics of TCP/IP protocols and run an open source or commercial IDS, you may be asking 'What's next?' If so, this book is for you."

         —Ron Gula, founder and CTO, Tenable Network Security, from the Foreword

"Richard Bejtlich has a good perspective on Internet security—one that is orderly and practical at the same time. He keeps readers grounded and addresses the fundamentals in an accessible way."

         —Marcus Ranum, TruSecure

"This book is not about security or network monitoring: It's about both, and in reality these are two aspects of the same problem. You can easily find people who are security experts or network monitors, but this book explains how to master both topics."

         —Luca Deri, ntop.org

"This book will enable security professionals of all skill sets to improve their understanding of what it takes to set up, maintain, and utilize a successful network intrusion detection strategy."

         —Kirby Kuehl, Cisco Systems

Every network can be compromised. There are too many systems, offering too many services, running too many flawed applications. No amount of careful coding, patch management, or access control can keep out every attacker. If prevention eventually fails, how do you prepare for the intrusions that will eventually happen?

Network security monitoring (NSM) equips security staff to deal with the inevitable consequences of too few resources and too many responsibilities. NSM collects the data needed to generate better assessment, detection, and response processes—resulting in decreased impact from unauthorized activities.

In The Tao of Network Security Monitoring, Richard Bejtlich explores the products, people, and processes that implement the NSM model. By focusing on case studies and the application of open source tools, he helps you gain hands-on knowledge of how to better defend networks and how to mitigate damage from security incidents.

Inside, you will find in-depth information on the following areas.

  • The NSM operational framework and deployment considerations.
  • How to use a variety of open-source tools—including Sguil, Argus, and Ethereal—to mine network traffic for full content, session, statistical, and alert data.
  • Best practices for conducting emergency NSM in an incident response scenario, evaluating monitoring vendors, and deploying an NSM architecture.
  • Developing and applying knowledge of weapons, tactics, telecommunications, system administration, scripting, and programming for NSM.
  • The best tools for generating arbitrary packets, exploiting flaws, manipulating traffic, and conducting reconnaissance.

Whether you are new to network intrusion detection and incident response, or a computer-security veteran, this book will enable you to quickly develop and apply the skills needed to detect, prevent, and respond to new and emerging threats.



See all Product Description

Suggested Tags from Similar Products

 (What's this?)
Be the first one to add a relevant tag (keyword that's strongly related to this product)
Check a corresponding box or enter your own tags in the field below
security
nsm
monitoring
forensics
bejtlich

Your tags: Add your first tag
 

What Do Customers Ultimately Buy After Viewing This Item?

The Tao of Network Security Monitoring: Beyond Intrusion Detection
93% buy the item featured on this page:
The Tao of Network Security Monitoring: Beyond Intrusion Detection 4.5 out of 5 stars (2)
£32.29
Extrusion Detection: Security Monitoring for Internal Intrusions
7% buy
Extrusion Detection: Security Monitoring for Internal Intrusions
£30.59

 

Customer Reviews

2 Reviews
5 star:
 (1)
4 star:
 (1)
3 star:    (0)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
4.5 out of 5 stars (2 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
5.0 out of 5 stars A must on any network security analyst's shelf, 10 Jun 2009
By Siraj A. Shaikh (Swindon, Wilts, UK) - See all my reviews
(REAL NAME)   
Bejtlich's book lays down the foundation of the Network Security Monitoring (NSM) concept. This is not just another 'How to design a Firewall' or a 'Guide to better Security' but rather a thorough new approach to network security and intrusion detection. The message of the book is clear: monitoring network traffic is absolutely essential if one intends to make the network secure and defensible. And it covers all that is necessary.

The reader is provided with a thorough motivation and introduction to the idea of NSM, making a sound case for it. It covers a wide range of (almost all open source) tools and techniques to perform NSM, including a running case study and many command line examples. Readers are urged to practice the tools as they read through the book. The author delves further into some of the modern intrusion detection tools and dedicates a couple of entire chapters to this.

The book is aimed not just at the technical audience but also at those who manage network security, interact with clients, train security staff and are responsible for making decisions, with the author sharing his extensive experience and using case studies to illustrate best practices. The mid-section of the book goes into details of how to induct and mentor staff young staff into NSM activity, and is an excellent read for anyone who wants to hire or become a NSM analyst.

The last section of the book is dedicated to understanding intruders, their motivations, approaches and, most importantly, tools. The author covers a wide variety of avenues used by intruders to launch attacks and stay covert. The appendices are useful and include a very important section on the intellectual history of NSM, covering a range of academic papers on network intrusion detection and security monitoring concepts.

This book is excellent value for money. Bringing together a vast range of tools and techniques employed in the industry to monitor networks, with examples and plentiful references, the book is a very valuable resource to anyone interested in securing their networks. The idea of NSM essentially lays down a new discipline under which to study network security with packet-level precision and a sharp insight. This book is a must on any network security analyst's shelf.
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
0 of 2 people found the following review helpful:
4.0 out of 5 stars TAO???, 18 Dec 2007
Well... FIRST, I have to say that I appreciate a lot all of the reviews from R. Bejtlich.
About this book, I do not understand the title! What "TAO" does mean?
As a French person I am happy to take the blame of beeing stupid but...
could you help?
Comment Comment (1) | Permalink | Was this review helpful to you? Yes No (Report this)


Share your thoughts with other customers: Create your own review
 
 
 
Only search this product's reviews



Customer Discussions

 Beta (What's this?)
This product's forum (0 discussions)
  Discussion Replies Latest Post
  No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
  [Cancel]

   


Listmania!


Look for similar items by category


Feedback


The Body Shop

The Body Shop - Vitamin C Skin Boost
Protect and boost your glow with The Body Shop Vitamin C Skin Boost.

Shop The Body Shop

 

More From Richard Bejtlich

Real Digital Forensics...

Real Digital Forensics: Computer...

You can't succeed in the field of computer forensics without hands-on... Read more
£35.90 £30.52

 

Up to 50% off Dental Care

Braun Oral-B Professional Care 6000 Rechargeable Toothbrush - Pack of 2
Put a sparkle in your smile with up to 50% off selected Oral-B and Philips rechargeable toothbrushes.

Up to 50% off power toothbrushes

 

Treat Someone

Amazon.co.uk Gift Certificates--available in any amount from £5 to £500 With an Amazon.co.uk Gift Certificate, you can get them what they want (even if you don't know what that is).

Learn more about Gift Certificates

 
Ad

Where's My Stuff?

Delivery and Returns

Need Help?

Your Recent History

  (What's this?)
You have no recently viewed items or searches.

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.

Look to the right column to find helpful suggestions for your shopping session.

Continue Shopping: Top Sellers
The Girl Who Played with Fire
Breaking Dawn (Twilight Saga)
The Girl with the Dragon Tattoo
The Host
The Host by Stephenie Meyer

amazon.co.uk Amazon Home
International Sites:  United States  |  Germany  |  France  |  Japan  |  Canada  |  China
Business Programs: Sell on Amazon  |  Fulfilment by Amazon  |  Join Associates  |  Join Advantage
Customer Service  |  Help  |  View Basket  |  Your Account
About Amazon.co.uk  |  Careers at Amazon
Conditions of Use & Sale |  Privacy Notice  © 1996-2009, Amazon.com, Inc. and its affiliates