官术网_书友最值得收藏!

Source of network evidence

Network evidence can be collected from a variety of sources and we will discuss these sources in the next section. The sources that we will be discussing are:

  • Tapping the wire and the air
  • CAM table on a network switch
  • Routing tables on routers
  • Dynamic Host Configuration Protocol logs
  • DNS server logs
  • Domain controller/ authentication servers/ system logs
  • IDS/IPS logs
  • Firewall logs
  • Proxy Server logs
主站蜘蛛池模板: 休宁县| 南乐县| 宁化县| 白银市| 五大连池市| 内江市| 阜康市| 延川县| 南雄市| 庆元县| 嘉定区| 鹤岗市| 怀柔区| 都兰县| 左贡县| 西畴县| 曲麻莱县| 桂平市| 定西市| 金堂县| 类乌齐县| 津南区| 西乌珠穆沁旗| 依安县| 甘肃省| 兴山县| 太和县| 黄平县| 称多县| 南平市| 蓬莱市| 吉安县| 靖安县| 容城县| 醴陵市| 万全县| 商河县| 连州市| 荃湾区| 黄大仙区| 巴马|