Re: What type of IDS should I use?



Hi Michael,
U mean Intrusion detection System , if I am not wrong
, U might want to look at some of the solution
available in the market which allows u to manage the
IDS/IPS sensors installed at the remote locations from
the centralised yet distributed management system.
Also look for strong management features like
delegation of administrator duties with appropriate
rights.
You can look at the products like Fortinet, iPolicy
IPF, juniper ISG, and Tipping point. All are
comparable strong IDS/IPS solution.
Best of Luck !!
TCP-FIN

--- Michael Casale <MCasale@xxxxxxxxxxxxx> wrote:

Hi all,

I've been using in-place scanners such as snort in
the past, but now we want to roll out clients to our
user computers and servers in remote offices, to
inspect traffic and generate real-time alerts.

Are there any client solutions that will do this? I
am the only Linux guy on staff, so a Linux-heavy
solution won't sit well with the other IT folks
here.

Thanks

Mike


The information contained in this message and any
attachment to it may be privileged, confidential or
otherwise protected from disclosure. If you are not
the intended recipient, you are hereby notified that
any dissemination, distribution or copying of this
communication is strictly prohibited. If you have
received this communication in error, please notify
the sender immediately by replying to the message
and please delete it from your system. Please also
note that any views or opinions presented in this
email are solely those of the author and do not
necessarily represent those of the company.



------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to

http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
to learn more.

------------------------------------------------------------------------




__________________________________________________
Do You Yahoo!?
Tired of spam? Yahoo! Mail has the best spam protection around
http://mail.yahoo.com

------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
to learn more.
------------------------------------------------------------------------



Relevant Pages

  • Re: IDS requirement
    ... > Do You Yahoo!? ... Mail has the best spam protection around ... > Find out quickly and easily by testing it with real-world attacks from ... > CORE IMPACT. ...
    (Focus-IDS)
  • Re: Tracking back internal incidents to users, not IPs
    ... Note that I am assuming that the source is a DHCP system here (otherwise ... Note that I would take an open source or a commercial product as a ... with real-world attacks from CORE IMPACT. ...
    (Focus-IDS)
  • Re: Tracking back internal incidents to users, not IPs
    ... Note that I am assuming that the source is a DHCP system here (otherwise ... it is much easier problem). ... with real-world attacks from CORE IMPACT. ...
    (Focus-IDS)
  • Re: how to show print job attributes outsite of smit
    ... Is there anything (other than the smit panel) that ... > Do you Yahoo!? ... > immediately delete the entire communication, ... > Towers Perrin does not encrypt and cannot ensure the ...
    (AIX-L)
  • SV: Bittorrent - utorrent
    ... As I am a contractor on the job – I could not controle their policies to whats legal and whats not – so that issue was out of the question. ... If it's not based on protocol interpretation and file type look up, ... Find out quickly and easily by testing it with real-world attacks from ... with real-world attacks from CORE IMPACT. ...
    (Focus-IDS)