IDS Evaluation

From: naga raj peddisetty (nag_theindian_at_yahoo.com)
Date: 01/04/05

  • Next message: Scott Kelly: "snort signature analysis tools"
    Date: 4 Jan 2005 16:38:55 -0000
    To: focus-ids@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is)

    Hello,
        I am evaluating IDS products based on some important characterstics and challenges. In this process I have to evaluate Cisco, NFR, Intruder Alert,SecureNet,Netscreen IDP and Trip wire for the ZERO-DAY attack measurement.
      1)So, Could you please suggest me the what best measurements comes for Zero-day attack.
      2). How frequent an IDS products must be updated inorder to protect against zero-day attacks?
      3) what are the other measures to look for in products for protection against zero-day attacks?.
      4) Do any of you have evalauated any of the above products? Any URLs? Can you please send them!!

    Thanks in advance for your help.

    Nag Raj Peddisetty,
    Sweden.

    --------------------------------------------------------------------------
    Test Your IDS

    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from
    CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
    to learn more.
    --------------------------------------------------------------------------


  • Next message: Scott Kelly: "snort signature analysis tools"