Network Analysis with OPNsense
Offered By: Pluralsight
Course Description
Overview
This course will teach you how to install and perform basic network analysis using the various plugins and packages with OPNsense.
Visibility into your network is essential to effectively discover or defend against attacks. Threat actors have a similar goal to gather as much intelligence as they can about their target network. The difference is an attacker will use that to plan an attack while a defender will use it to try and prevent or discover an attack. In this course, Network Analysis with OPNsense, you'll cover how to utilize OPNsense Firewall to secure a live enterprise environment. First, we’ll discuss installation methods and some basic features of OPNsense, and navigate the user interface to show and install the plugs-in and packages we need to conduct analysis. Next, we will configure Netflow v9, ntop, Suricata, and Zenarmor. Finally, we will use these tools to perform basic network analysis, highlighting the capabilities and differences of each. When you’re finished with this course, you’ll have the skills and knowledge to detect Active Scanning (T1595) and Network Service Discovery (T1046) using OPNsense with Netflow, Suricata, and Zenarmor (Sensei) to effectively recommend mitigations and appropriate response actions.
Visibility into your network is essential to effectively discover or defend against attacks. Threat actors have a similar goal to gather as much intelligence as they can about their target network. The difference is an attacker will use that to plan an attack while a defender will use it to try and prevent or discover an attack. In this course, Network Analysis with OPNsense, you'll cover how to utilize OPNsense Firewall to secure a live enterprise environment. First, we’ll discuss installation methods and some basic features of OPNsense, and navigate the user interface to show and install the plugs-in and packages we need to conduct analysis. Next, we will configure Netflow v9, ntop, Suricata, and Zenarmor. Finally, we will use these tools to perform basic network analysis, highlighting the capabilities and differences of each. When you’re finished with this course, you’ll have the skills and knowledge to detect Active Scanning (T1595) and Network Service Discovery (T1046) using OPNsense with Netflow, Suricata, and Zenarmor (Sensei) to effectively recommend mitigations and appropriate response actions.
Syllabus
- Course Overview 1min
- Performing Network Analysis with OPNsense 39mins
- Resources 1min
Taught by
Brian Dorr
Related Courses
Suricata: Getting StartedPluralsight Aprenda o Firewall pfSense v2023 do zero ao avançado!
Udemy Manage Suricata Rule Sets and Rule Sources
Pluralsight Network Security Monitoring with Suricata
Pluralsight Intrusion Detection with Suricata - Blue Team Series with Hackersploit
Linode via YouTube