Free

Security Onion

Security Onion is an open-source Network Security Monitoring and log management Linux Distribution. In this Security Onion course, you will explore the history, components, and architecture of the distro to improve your networking skills. Learn how to install and deploy server architectures, as well as how to replay or sniff traffic.
3
10
M
Time
beginner
difficulty
3
ceu/cpe

Course Content

11.1 Course Wrap Up

2m

Module 11: Wrap Up
1.1 Introduction

4m

Module 1: Introduction
2.1 What is Security Onion?

5m

Module 2: What is Security Onion?
3.1 Security Onion Download and Installation Part 1

10m

Module 3: Installing a Standalone Server
4.1 Server Configuration Demo Part 1

4m

Module 4: Installing a Distributed Environment
5.1 Server Installation Review

2m

Module 5: Reviewing the Installation
6.1 Resources Part 1

6m

Module 6: Resources
7.1 TCPReplay Part 1

2m

Module 7: Replaying Traffic on a Standalone Server
8.1 Sniffing Traffic

4m

Module 8: Sniffing Traffic in a Distributed Environment
9.1 Lesson 9 Agenda

1m

Module 9: Management Tips and Best Practices
10.1 Lesson 10 Overview

1m

Module 10: Other Functionality
2.2 Monitoring and Analysis Tools

4m

Module 2: What is Security Onion?
3.2 Security Onion Download and Installation Part 2

11m

Module 3: Installing a Standalone Server
4.2 Server Configuration Demo Part 2

11m

Module 4: Installing a Distributed Environment
5.2 Checking System Services With sostat

5m

Module 5: Reviewing the Installation
6.2 Resources Part 2

4m

Module 6: Resources
7.2 TCPReplay Part 2

17m

Module 7: Replaying Traffic on a Standalone Server
8.2 Traffic Overview in Kibana

13m

Module 8: Sniffing Traffic in a Distributed Environment
9.2 Salt Tips

5m

Module 9: Management Tips and Best Practices
10.2 Wazuh/OSSEC Functionality

1m

Module 10: Other Functionality
2.3 Security Onion Architecture

7m

Module 2: What is Security Onion?
4.3 Server Configuration Demo Part 3

14m

Module 4: Installing a Distributed Environment
5.3 Security Onion Web Browser Tools

9m

Module 5: Reviewing the Installation
7.3 TCPReplay Part 3

18m

Module 7: Replaying Traffic on a Standalone Server
8.3 SSH Success

1m

Module 8: Sniffing Traffic in a Distributed Environment
Course Description

Overall, this course will allow you to learn how to maintain and update Security Onion.

Students should have networking knowledge (TCP/IP, Protocols, Packets, etc.), linux knowledge (mkdir, Is, vi, ifconfig, etc.), and security technology knowledge (IDS, Full Packet Capture, etc).

This course is part of a Career Path:
No items found.

Instructed by

Instructor
Karl Hansen

Hi. I’m Karl. I live in the Mountain West region of the United States. I have been working in Cyber Security for over 4 years. Prior to working in Cyber Security I worked in several industries including nuclear medicine, furniture, and plumbing. I have a Bachelor of Arts in History, and a Masters of Science in Information Systems, as well as the CISSP and GCIA.

Outside of my professional life, I thoroughly enjoy working with my hands. I have done a lot of work upgrading houses, as well as milling lumber with my chainsaw with the goal of turning the wood on my lathe into something beautiful. I am also something of an urban homesteader, in that I have a fairly large garden, a flock of chickens, and my corgi, Menchi. I have a wonderful family to help me with these tasks, and I enjoy every minute of it.

Provider
Cybrary Logo
Certification Body
Certificate of Completion

Complete this entire course to earn a Security Onion Certificate of Completion