Re: IDS\IPS that can handle one Gig

From: Byron L. Sonne (blsonne_at_rogers.com)
Date: 05/21/05

  • Next message: Konstantin V. Gavrilenko: "Re: IDS\IPS that can handle one Gig"
    Date: Fri, 20 May 2005 18:03:14 -0400
    To: Randall Jarrell <rgj@msn.com>, focus-ids@securityfocus.com
    
    

    > Could anyone share a success story of a vendor they are using that is
    > handling this type of traffic?

    It's not a vendor, but I've heard people have been running Snort quite
    well on gig links.

    --------------------------------------------------------------------------
    Test Your IDS

    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from
    CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
    to learn more.
    --------------------------------------------------------------------------


  • Next message: Konstantin V. Gavrilenko: "Re: IDS\IPS that can handle one Gig"

    Relevant Pages

    • Re: How to choose an IDS/FW MSS provider
      ... I don't think there's a whole lot of research spent by any IPS vendor on ... before you ask ISS to release their codebase for their signature ... >>CORE IMPACT. ...
      (Focus-IDS)
    • Re: Intrusion Prevention requirements document
      ... The vendor answer is always, "don't turn on blocking and just monitor." ... > anyone developed a matrix that identifies key qualifiers in an IPS solution ... > with real-world attacks from CORE IMPACT. ...
      (Focus-IDS)
    • Re: IPS - Default blocking policy
      ... Most sites use whatever the vendor tells them, so default blocking is enabled in 99% of the sites. ... with real-world attacks from CORE IMPACT. ...
      (Focus-IDS)