1/9
Flashcards created to help understand the key concepts and definitions related to Network Device Logs as discussed in the lecture.
Name | Mastery | Learn | Test | Matching | Spaced |
---|
No study sessions yet.
Network Device Logs
Valuable sources of performance, troubleshooting, and security auditing information.
System Log
Records startup events and changes to the configuration at the OS level.
Application Log
Records data for a single specific service like DNS, HTTP, or database.
Audit Log
Records use of authentication and authorization privileges, capturing success/failure events.
Performance/Traffic Logs
Records metrics for compute, storage, and network resources over a defined period.
TCP/IP Events
Network events logged to troubleshoot issues like IP conflicts.
User Account Compromise
If a user account is compromised, tied events in the log cannot be tied to the actual attacker.
Log Metadata
Includes date and time, category, and event ID of logged events.
Kernel Processes
Core processes of the operating system that may be logged in system logs.
OPNsense Security Appliance
Platform for viewing audit logs associated with user actions in network security.