IDS mailing list archives

Re: IDS vs. IPS deployment feedback


From: Jean-Philippe Luiggi <jp.luiggi () free fr>
Date: Fri, 07 Apr 2006 11:01:11 -0400

On Mon, Apr 03, 2006 at 11:22:01PM -0500, Will Metcalf wrote:
Yeah Ummm an IPS is nothing more than a layer7 "application layer" firewall

  Hello,
  
  Even if i agree with you on some points, this last assertion is (IMHO)
  false.
  As far i know, IPS/IDS run mainly with rules, a layer7 firewall
  knows the protocol it's watching about and uses differents
  solutions to check out the traffic, not only pattern matching. One i know
  is using neural network for example.
  
  Best regards.
  
  

------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it 
with real-world attacks from CORE IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 
to learn more.
------------------------------------------------------------------------


Current thread: