ntopng and Suricata: Merging Network Visibility and Security

Поделиться
HTML-код
  • Опубликовано: 3 авг 2024
  • Presented at SuriCon 2019 by Luca Deri, Alfredo Cardigliano
    ntopng is an open source network traffic monitoring application included in most Linux distributions and security toolkits. Recently it has been enhanced to include native support of Suricata generated events. This allows network administrators to monitor with a single tool both network traffic and security threats, and enhance Suricata by complementing it with features typical of monitoring tools such as SNMP, IPFIX/sFlow support, as well visibility of containerized environments. This allows Suricata events to be placed on the right context and root cause of threats to be better identified, this to provide network administrators a clear picture of the traffic flowing into their network.
  • НаукаНаука

Комментарии • 1