RE: Fortinet IDS

From: JAVIER OTERO (jotero_at_SMARTEKH.com)
Date: 07/26/04

  • Next message: travis.alexander_at_lacamas.org: "RE: Fortinet IDS"
    Date: Mon, 26 Jul 2004 10:07:34 -0500
    To: <focus-ids@securityfocus.com>
    
    

    The number of virus and IDS/IPS is very limited, the performance is too afected.

    internet <--------> FW&IDP&AV&... <--------> LAN
                            | |
                       Only this trafic Internal attacks &
                       is reviewed virus are not reviewed

    Remember the 2 basic security principles:
    Minimun privileges
    Function separation <<<

    Ing. Fco. Javier Otero De Alba
    Diplomado en Seguridad Informática ITESM CEM
    ITStrap
    Product Manager
    Juniper Secure Access SSL

    5243-4782 al 84 Ext.300
    México, D.F.

    -----Mensaje original-----
    De: Teicher, Mark (Mark) [mailto:teicher@avaya.com]
    Enviado el: Domingo, 25 de Julio de 2004 01:05 p.m.
    Para: Kyle Maxwell; focus-ids@securityfocus.com
    Asunto: RE: Fortinet IDS

     
    Yes,

    The AV scanning is limited to 10 MB per file, if a file is greater than
    10MB, the performance is dramatically impacted.

    /mark

    -----Original Message-----
    From: Kyle Maxwell [mailto:krmaxwell@gmail.com]
    Sent: Wednesday, July 21, 2004 01:48 PM
    To: focus-ids@securityfocus.com
    Subject: Fortinet IDS

    Does anyone on the list have any experience with the Fortinet products,
    especially the IDS/IPS (and potentially antivirus blocking)?
    Any thoughts? I've read some reviews and the ICSA Labs report but would
    be interested to hear from folks here on the list.

    --
    Kyle Maxwell
    krmaxwell@gmail.com
    ------------------------------------------------------------------------
    --
    Test Your IDS
    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from
    CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
    to learn more.
    ------------------------------------------------------------------------
    --
    --------------------------------------------------------------------------
    Test Your IDS
    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from CORE
    IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more.
    --------------------------------------------------------------------------
    --------------------------------------------------------------------------
    Test Your IDS
    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from CORE
    IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more.
    --------------------------------------------------------------------------
    

  • Next message: travis.alexander_at_lacamas.org: "RE: Fortinet IDS"

    Relevant Pages

    • RE: Fortinet IDS
      ... agree on the performance hit when this is set to anything higher. ... Subject: Fortinet IDS ... Find out quickly and easily by testing it with real-world attacks ... CORE IMPACT. ...
      (Focus-IDS)
    • RE: Fortinet IDS
      ... So when the IDS (Ver. ... Subject: Fortinet IDS ... Find out quickly and easily by testing it with real-world attacks from ... CORE IMPACT. ...
      (Focus-IDS)
    • RE: Fortinet IDS
      ... Subject: Fortinet IDS ... Find out quickly and easily by testing it with real-world attacks from CORE ...
      (Focus-IDS)
    • useful real-life example of IDS/IPS
      ... I'm looking for a real-life case in which an IDS/IPS, if it had been deployed, could have prevented a security breach. ... A hacker penetrates an organization's network using a known vulnerability ... Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. ...
      (Focus-IDS)

  • Quantcast