From the course: Cisco CCNP Security SCOR v1.1 (350-701) Cert Prep
Unlock this course with a free trial
Join today to access over 24,800 courses taught by industry experts.
Cisco Stealthwatch
From the course: Cisco CCNP Security SCOR v1.1 (350-701) Cert Prep
Cisco Stealthwatch
- [Instructor] In this section, we want to examine a few more Cisco Security solutions. The SCOR blueprint tells us that we need to be familiar with several Cisco Security products and be able to describe the capabilities of those. So we'll start here with Cisco Stealthwatch. This is another great tool that gives us very deep and detailed visibility into our network, allowing us to keep track of everything happening through network telemetry. At the top, we can see several alarm categories, and for each category you can see a number below that. These numbers indicate how many network endpoints are currently exhibiting that particular behavior. So for example, if we click on this Recon section, to take a look at that, you can see there are currently four endpoints listed under Recon and clicking that category is going to bring us to a list of these affected hosts. With the Recon category specifically, hosts would trigger this alarm if they are performing unauthorized scans, using TCP…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
-
(Locked)
Guest services6m 48s
-
(Locked)
Profiling7m 32s
-
(Locked)
BYOD policies5m 52s
-
(Locked)
802.1X11m 11s
-
(Locked)
MAB4m 56s
-
(Locked)
WebAuth7m 43s
-
(Locked)
DNS tunneling3m 15s
-
(Locked)
HTTPS3m 50s
-
(Locked)
Email3m 12s
-
(Locked)
File transfer protocols3m 54s
-
(Locked)
ICMP4m 8s
-
(Locked)
NTP3m 34s
-
(Locked)
Cisco Stealthwatch6m 58s
-
(Locked)
Cisco Stealthwatch cloud5m 53s
-
(Locked)
Cisco pxGrid4m 10s
-
(Locked)
Cisco CTA and ETA6m 23s
-
(Locked)
Cisco AnyConnect Network Visibility Module (NVM)3m 26s
-
(Locked)
-