Re: Win32 HIDS

From: Tod Beardsley (todb@planb-security.net)
Date: 09/19/02


Date: Wed, 18 Sep 2002 22:41:00 -0000 (UTC)
From: "Tod Beardsley" <todb@planb-security.net>
To: <focus-ids@securityfocus.com>


>Does anyone know of any free or low cost HIDS for win32 platform?
>
>Thanks,
>Chris Peden, MCP

Rigging together a system using straight Security Event Logging,
judiciously chosen SACLs, and SysInternals DumpEvt
(http://www.somarsoft.com/) certainly meets the "low cost" objective...
not exactly user friendly, though.

Assuming you're talking about filesystem-based intrusion detection kinda
stuff.

-----------------------------------------
This email was sent using FREE Catholic Online Webmail.
Please tell your family, friends and children about COL Webmail!
http://webmail.catholic.org/


Loading