Information Technology
Trending Arrow Icon
Trending
Hands on Training icon
Hands On Training
Trending Arrow Icon
Hands on Training icon

Writing Zeek Rules and Scripts

Course Cover
compare button icon

Course Features

icon

Duration

126 minutes

icon

Delivery Method

Online

icon

Available on

Downloadable Courses

icon

Accessibility

Desktop, Laptop

icon

Language

English

icon

Subtitles

English

icon

Level

Intermediate

icon

Teaching Type

Self Paced

icon

Video Content

126 minutes

Course Description

Zeek is an event-based monitoring and analysis tool that helps to monitor networks and identify potential threats. It allows users to monitor traffic through networks and to respond in different ways. This tool can be used more efficiently if you know how to modify its functionality using rules and scripts. This course, Writing Zeek Rules & Scripts, will teach you all about the frameworks of this tool and how to customize it. You'll also learn how to use it. You will first learn about Zeek customization and scripting. Next, you'll learn about the Default scripts as well as how to modify them to your requirements. You will also learn how to use the frameworks to create the functionality you need for your specific use cases. After completing this course, Zeek will be available for you to modify to suit your needs and the environment.

Course Overview

projects-img

International Faculty

projects-img

Post Course Interactions

projects-img

Instructor-Moderated Discussions

projects-img

Case Studies, Captstone Projects

Skills You Will Gain

What You Will Learn

You will learn all about this tool's frameworks and how to use them to customize the tool, as well as how to use it

First, you will learn about the various components used with Zeek customization and scripting

Next, you will learn about the Default scripts and how to modify them to suit your needs

Finally, you will practice using the frameworks to build the needed functionality for your use cases

When you're finished with this course, you will have the ability to modify Zeek in order to support your desired use cases and environment

Course Instructors

Author Image

Joe Abraham

Instructor

Joe Abraham, CCIE #62417, is a Network Security Consultant working in the public sector space, assisting customers develop and implement functional and secure network architectures. He graduated from...
Course Cover