Chapter 20: Network Monitoring Flashcards
Simple Network Management Protocol (SNMP)
The network management protocol for TCP/IP.
UDP ports 161/162 or 10161/10162
SNMP Manager
Requests and processes info from the managed devices
Management Information Bases (MIB)
Used to categorize the data that can be queried from the managed devices.
Extensible Protocol
A protocol that can be adapted to accommodate different needs.
Protocol Data Unit (PDU)
Specialized type of command and control packet found in SNMP management systems.
snmpwalk
Tells the SNMP manager to perform a series of Get commands
Packet Sniffer
A program that queries a network interface and collects packets in a file
Packet Analyzer
Analyzes the file from a packet sniffer
Interface Monitor
Tracks the bandwidth and utilization of devices.
Performance Monitor
Tracks the performance of some aspect of a system over time.
Performance Monitor for Windows
PerfMon
Performance Monitor for Linux
syslog
Baseline
A log that gives you a picture of your network when it’s working correctly
Cycling
As a new record appears in a full file, the oldest record is deleted
SIEM
Security Information and Event Management