Skip to content
KnowledgeCity

Traffic Analysis for Intrusion Prevention

Learn how to perform a deeper analysis of traffic throughout your network to implement more specific security measures
Preview the first lesson free — get full access to all 3 lessons.
Course: On-Demand
Beginner Provider Jerry Smith  3 Lessons ·  14m  in Arabic, German, English, Spanish, French, Portuguese, Chinese 

Course Description

To effectively protect and secure a network, one must understand what it is they are protecting. To implement and maintain Intrusion Detection and Prevention Systems, an analyst must fully understand how network traffic flows, which is why this course will introduce the OSI and TCP/IP models and explain how networks communicate with one another. When performing an investigation or troubleshooting an issue, it’s important to remember that more information is always better. Using network analysis tools such as tcpdump and Wireshark will give you a unique and detailed view of your network traffic.

In this course on Traffic Analysis for Intrusion Prevention, we will explore the OSI and TCP/IP network models to get a granular view of how network traffic works. We will also explain how to install and use tcpdump and Wireshark. By the end of this course, you will have the skills needed to better analyze and monitor network traffic and security.

What You'll Learn

  • Understand the importance of the OSI and TCP/IP network models and how networks communicate
  • Explore how network traffic flows at a granular level to support intrusion detection and prevention
  • Install and use tcpdump to capture and view network traffic
  • Install and use Wireshark to analyze network traffic in detail
  • Apply best practices for monitoring network traffic and security

Key Takeaways

  • Understanding what you are protecting and how network traffic flows is essential to implementing and maintaining Intrusion Detection and Prevention Systems.
  • The OSI and TCP/IP models provide a granular view of how networks communicate with one another.
  • Network analysis tools such as tcpdump and Wireshark give a detailed view of network traffic.
  • When investigating or troubleshooting, more information is always better.
  • By the end of the course, learners gain the skills to better analyze and monitor network traffic and security.

Frequently Asked Questions

Who is this course for?

It is for analysts who work to protect and secure a network and who need to implement and maintain Intrusion Detection and Prevention Systems by understanding how network traffic flows.

What tools does this course cover?

It covers the network analysis tools tcpdump and Wireshark, explaining how to install and use each to view network traffic in detail.

What topics are taught in this course?

The course introduces the OSI and TCP/IP network models and explains how to install and use tcpdump and Wireshark, with lessons on Introduction to TCP/IP and OSI, Introduction to TCP Dump, and Introduction to Wireshark.

What skills will I gain?

You will gain skills in intrusion detection and prevention, network protocol analysis, network traffic analysis, network traffic management, packet analyzer use, and traffic analysis, enabling you to better analyze and monitor network traffic and security.