IDS mailing list archives
Re: Re: OSSIM as IDS
From: nospam () blahblahblaaah com
Date: 26 May 2008 14:12:03 -0000
Well, two years ago you needed some skills to make it work. Perhaps you were not available to use the server correlation engine, perhaps you didn't write your own correlation rules, and perhaps you didn't write some plugins for all of this. You can make your own IDS rules, more sophisticated than with snort. The agent has a easy and powerfull plugin system. So it's not just a frontend of snort. It started with snort as the main plugin but it can collect events from a lot of devices and logs. Give it a try. ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw to learn more. ------------------------------------------------------------------------
Current thread:
- OSSIM as IDS online_preeti (May 21)
- Re: OSSIM as IDS dkny (May 21)
- Re: OSSIM as IDS Chris Griffin (May 21)
- Re: OSSIM as IDS Tremaine Lea (May 21)
- Re: OSSIM as IDS dogten (May 22)
- <Possible follow-ups>
- Re: Re: OSSIM as IDS preetichauhan1982 (May 22)
- Re: Re: OSSIM as IDS Jakub (May 22)
- Re: Re: OSSIM as IDS nospam (May 26)
- Re: OSSIM as IDS dkny (May 21)