Hello all,
Given that understanding and interpreting logs is a critical skill needed to pass the CySA+ exam, I was curious how others are teaching log analysis. I tend to use GNS3 and/or stand-along Virtual Machines and have some activities where I have folks interact with server processes (http, mail, ssh, etc.) and watch the logs. I also like to have my students run basic attacks from one appliance and watch the logs in real-time on the target appliance as the attacks play out. What is everyone else doing in this area?
Given that understanding and interpreting logs is a critical skill needed to pass the CySA+ exam, I was curious how others are teaching log analysis. I tend to use GNS3 and/or stand-along Virtual Machines and have some activities where I have folks interact with server processes (http, mail, ssh, etc.) and watch the logs. I also like to have my students run basic attacks from one appliance and watch the logs in real-time on the target appliance as the attacks play out. What is everyone else doing in this area?