Re: ssh and ids

From: Gary Flynn (flynngn_at_jmu.edu)
Date: 06/21/04

  • Next message: Matthew F. Caldwell: "RE: ssh and ids"
    Date: Mon, 21 Jun 2004 08:43:16 -0400
    To: "Runion Mark A FGA DOIM WEBMASTER(ctr)" <mark.runion@us.army.mil>
    
    

    Runion Mark A FGA DOIM WEBMASTER(ctr) wrote:

    >Lets suppose the attacker is mildly sophisticated, and after making the
    >initial assault
    >
    One chance to trip the IDS

    > roots the box
    >
    Another chance to trip the IDS (or host integrity checking)

    > and installs a secure backdoor or two
    >
    Another chance to trip the IDS.

    >. Is
    >there any IDS capable of isolating data it cannot read, except to monitor
    >authorized port usage of a system or group of systems?
    >
    The Juniper/Netscreen IDP comes with a feature called Profiler
    that you can set to discover and alert on new port or host
    appearances. You set it to discover whats normal, then turn on
    alerting.

    ---------------------------------------------------------------------------

    ---------------------------------------------------------------------------


  • Next message: Matthew F. Caldwell: "RE: ssh and ids"

    Relevant Pages

    • Times competitions
      ... Send us your best photograph for a chance to win a five-night trip for two ... weekly nominees will be published in The Times travel section on Saturdays. ... WIN A BIG TRIP TO CALIFORNIA ... holiday including Sea World, a chance to go skiing in Denver, a Californian ...
      (uk.rec.competitions)
    • Re: Excellent racing today
      ... ZUZU a lightly raced type has cheekpieces to help get her back on track ... Gosden`s raider is a ready winner of his last 2 races and has a chance,although I cannot see itif odds permit an ew chance at least. ... Cracking race this year. ... I`m not giving up on RAINBOW VIEW,dropped back to a mile which his her trip imho. ...
      (uk.sport.horseracing)
    • Re: what if the message-ID generator generates a dirty word?
      ... considering that the flaw is imaginary in practice? ... so there was only about 1/8th of a chance you'd ... Any site that generates enough IDs is likely to eventually create ... Try searching for 'sexy' in your store of IDs, ...
      (comp.security.misc)
    • Re: How many lines of code per programmer-hour?
      ... mind a trip back home :-) ... Hmmm. ... Adelaide by any chance? ...
      (borland.public.delphi.non-technical)
    • Hennessy - Nickname
      ... I've always liked The Listener quite a but I don't think it's quite as cut and dried as the betting makes out today. ... For example you have last year's Sun Alliance runner-up Snowy Morning who has been keeping himself busy over hurdles but the main danger and one I am taking a chance on is NICKNAME. ... mainly over 2 miles but did slam Central House by 13 lengths last March over 2 1/2miles and won easily over that trip as a novice so there is every chance there will be improvement still to come stepped up to 3 miles. ...
      (uk.sport.horseracing)

  • Quantcast