This book is a training aid and reference for intrusion detection analysts. While the authors refer to research and theory, they focus their attention on providing practical information. The authors are literally the most recognized names in this specialized field, with unparalleled experience in defending our country's government and military computer networks. New to this edition is coverage of packet dissection, IP datagram fields, forensics, and snort filters.
Ce livre est la 2ème édition du livre déjà lu (3ème édition).
J'étais intéressé surtout par les parties spécifiques aux IDS et à la corrélation. Les cas d'analyses sont très intéressants. Malheureusement, ça date.
Great book and a simple introduction to the field of Intrusion Detection. And although the book is kinda antiquated now, it still remains a quite relevant for beginners.