Re: Enterasys D.I.R Vs. Cisco



Hi Juan,

I've tested DIR in laboratory and it really works well. We had a
Dragon IDS detecting attacks and, when integrated with NetSight Atlas,
applying restrictions to the attacker's switch port.

Cisco does have a similar solution (I believe it's called RBAC) but it
depends on having servers specifically for this solution and, as far
as I know, it is not as complete as Enterasys.

I'd love to hear from people who've used Cisco's solution.

See ya,
Bernardo.

On 1/8/06, Juan B <juanbabi@xxxxxxxxx> wrote:
> Hi,
>
> I tought to implement Enterasys DIR (dynamic
> intrustion response ) on my corporate lan ,this new
> thecnology had a Firewall on each swithch port. one
> can configure a defailt policy for the entire switch
> and with one click enable it on all ports, with
> Netsight Atlas and authntication of users with a
> backend Ldap server or Active directory I can
> configure policy of traffic for each userin the
> company this is a Fw for layers 2-4.
> I tried to look for similer thechnologies at other
> vendors like cisco and they dont have anything. is it
> possible with cisco to configure ACL's on LAN switchs?
> like in the old 2900 familiy?
> and if yes, I dont thing it is managemble....
>
>
> So what so you think about the DIR? I guess the other
> vendors are way behind or am I wrong.
>
> Thnaks !
>
>
>
>
> __________________________________________
> Yahoo! DSL – Something to write home about.
> Just $16.99/mo. or less.
> dsl.yahoo.com
>
>
> ---------------------------------------------------------------------------
> EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
> The Norwich University program offers unparalleled Infosec management
> education and the case study affords you unmatched consulting experience.
> Tailor your education to your own professional goals with degree
> customizations including Emergency Management, Business Continuity Planning,
> Computer Emergency Response Teams, and Digital Investigations.
>
> http://www.msia.norwich.edu/secfocus
> ----------------------------------------------------------------------------
>
>


Relevant Pages

  • Re: Cat 2924
    ... Copyright 1986-2004 by cisco Systems, ... BOX in both H/W and S/W, compared to a C2924-XL Switch... ... FastEthernet0/1 failed front-end loopback test ... to make the port configuration "visible", you need to apply 2 commands ...
    (comp.dcom.sys.cisco)
  • Re: Cat 2924
    ... Copyright 1986-2004 by cisco Systems, ... BOX in both H/W and S/W, compared to a C2924-XL Switch... ... FastEthernet0/1 failed front-end loopback test ... to make the port configuration "visible", you need to apply 2 commands ...
    (comp.dcom.sys.cisco)
  • RE: Hub vs. Tap vs. SpanPort
    ... > On the 4000 and 6000 Cisco switches, ... > performace at all due to architecture. ... > the device if the traffic levels are high on the mirrored port. ... We've managed to impact switch ...
    (Focus-IDS)
  • Re: Restricting Admin Access to 2924
    ... requests on port 1 of the switch and ignore any requests on any other ... access isn't controlled that way on cisco. ... You need to configure layer-3 management access control based on the ...
    (comp.dcom.sys.cisco)