Solved

compare current Intrusion Detection System !

Posted on 2004-10-12
5
151 Views
Last Modified: 2010-04-11
there's many IDS: snort, Cisco IDS, RealSecure, NetProwler, Dragon, etc...
please experts, tell me their features; comparing their abilities, their strengths, their weakness.
thanks.
0
Comment
Question by:hoaivan
  • 2
5 Comments
 
LVL 23

Expert Comment

by:Tim Holman
ID: 12298007
Do you really need IDS ?
It's a forensics tool, and although a very useful part of the security picture, it won't actually prevent intrusions without weeks worth of tuning and false positive removal...  and even then, I would not trust an IDS with upstream ACL modification and TCP reset ability not to do anything with my genuine traffic !
If you want to prevent intrusions, rather than detect (and notice a few days later), then you need an IPS.
Look at the IPS 5500 from TopLayer for example - www.toplayer.com.  :)

0
 

Author Comment

by:hoaivan
ID: 12298513
i just do some researches on IDS, not for choosing which product to buy/use.
and i wanna have a perspective of ids products.
0
 
LVL 23

Accepted Solution

by:
Tim Holman earned 500 total points
ID: 12299821
SC mag have done a few vendor-neutral reviews in the past:

http://www.scmagazine.com/products/index.cfm?fuseaction=GroupTestDetails&GroupId=5876

0
 
LVL 51

Expert Comment

by:ahoffmann
ID: 12312748
sounds like a very general question. So: do you have any problems keying in IDS in yur favorite search engine?
Or what else do you expect as answer?
0

Featured Post

Simplifying Server Workload Migrations

This use case outlines the migration challenges that organizations face and how the Acronis AnyData Engine supports physical-to-physical (P2P), physical-to-virtual (P2V), virtual to physical (V2P), and cross-virtual (V2V) migration scenarios to address these challenges.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The related questions "How do I recover the passwords for my Q-See DVR" and "How can I reset my Q-See DVR to eliminate a password" are seen several times a week.  Here we discuss the grim reality of the situation.
Smart phones, smart watches, Bluetooth-connected devices—the IoT is all around us. In this article, we take a look at the security implications of our highly connected world.
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, Just open a new email message.  In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question