IDS mailing list archives

Re: Re: OSSIM as IDS


From: nospam () blahblahblaaah com
Date: 26 May 2008 14:12:03 -0000

Well, two years ago you needed some skills to make it work. Perhaps you were not available to use the server 
correlation engine, perhaps you didn't write your own correlation rules, and perhaps you didn't write some plugins for 
all of this. You can make your own IDS rules, more sophisticated than with snort.

The agent has a easy and powerfull plugin system. So it's not just a frontend of snort. It started with snort as the 
main plugin but it can collect events from a lot of devices and logs.

Give it a try.

------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it 
with real-world attacks from CORE IMPACT.
Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw 
to learn more.
------------------------------------------------------------------------


Current thread: