Network Forensics
BASIC DATA
course listing
A - main register
course code
ITX8205
course title in Estonian
Arvutivõrgu ja võrguliikluse analüüs
course title in English
Network Forensics
course volume CP
4.00
ECTS credits
6.00
to be declared
yes
fully online course
not
assessment form
Examination
teaching semester
autumn - spring
language of instruction
Estonian
English
Study programmes that contain the course
code of the study programme version
course compulsory
IVCM25/25
no
Structural units teaching the course
IT - Department of Software Science
Course description link
Timetable link
View the timetable
Version:
VERSION SPECIFIC DATA
course aims in Estonian
Saada teadmine millist infot on võimalik hankida arvutivõrgust ja ja tundma õppida vahendid arvutivõrgust info saamiseks ning analüüsimiseks.
course aims in English
Give a knowledge of the information what can be acquired from the network and get the skills to use tools for network forensic.
learning outcomes in the course in Est.
Saab aru arvutivõrgu struktuurist ja võrguprotokollidest
Oskab arvutivõrgust infot koguda ja kogumise süsteme luua
Oskab võrgu salvestistest ja logidest leida asjakohast infot ja oskab seda protsessi vajalikul määral automatiseerida.
Oskab kasutada logide ja võrguliikluse andmeid analüüsi ja ajajoone kokkupanemiseks
Mõistab võrguliikluse kogumise ja analüüsi õiguslikke aspekte
learning outcomes in the course in Eng.
Understands network structure and understands network protocols
Can collect information from network and design collection systems
Can extract relevant information from network capture files and proxy caches and can automate process to certain level
Can incorporate log and network data to analytic and timeline building process
Understands legal implications of network data collection and analysis.
brief description of the course in Estonian
Tüüpilised võrguprotokollid ja andmed, mida saab võrgust koguda.
Võrgu andmete formaadid tcpdump, pcap, netflow.
Kommertsiaalsed ja vabavaralised võrgu analüüsi vahendid.
Traadita võrgust andmete kogumine ja analüüs.
IPS/IDS vahendite kasutamine andmete analüüsi automatiseerimiseks, logimise optimiseerimine, krüpteerimine, protokollide tagasipööramine.
brief description of the course in English
Typical network protocols and data that can be collected from network. Network data formats tcpdump, pcap, netflow. Commercial and free tools for network data analysis. Wireless network data collection and forensics. IPS/IDS usage for data analysis automation, logging optimisation, OPSEC, footprint, encryption, and protocol reversing.
type of assessment in Estonian
eristav
type of assessment in English
.
independent study in Estonian
.
independent study in English
.
study literature
Network Forensics: Tracking Hackers through Cyberspace
study forms and load
daytime study: weekly hours
4.0
session-based study work load (in a semester):
lectures
2.0
lectures
-
practices
2.0
practices
-
exercises
0.0
exercises
-
lecturer in charge
-
LECTURER SYLLABUS INFO
semester of studies
teaching lecturer / unit
language of instruction
Extended syllabus
2025/2026 autumn
Toomas Lepik, IT - Department of Software Science
English
    EvaluationcriteriaITX8205.pdf 
    display more
    2023/2024 autumn
    Toomas Lepik, IT - Department of Software Science
    English
      2022/2023 autumn
      Toomas Lepik, IT - Department of Software Science
      English
        2021/2022 autumn
        Toomas Lepik, IT - Department of Software Science
        English
          2020/2021 autumn
          Toomas Lepik, IT - Department of Software Science
          English
            2019/2020 autumn
            Toomas Lepik, IT - Department of Software Science
            English
              2018/2019 spring
              Toomas Lepik, IT - Department of Software Science
              English
                2017/2018 spring
                Toomas Lepik, IT - Department of Software Science
                English
                  2016/2017 spring
                  Toomas Lepik, IT - Department of Software Science
                  English
                    2015/2016 spring
                    Toomas Lepik, IT - Department of Software Science
                    English
                      Course description in Estonian
                      Course description in English