nanog mailing list archives
Re: recommendations regarding IPS
From: "Fergie" <fergdawg () netzero net>
Date: Sat, 1 Apr 2006 02:07:09 GMT
Very. That (several sensors), and honeypots. You need to have tiered security posture... an IDS is not an 'end-all-be all' sort of thing -- it's just another tool. Personal experience and opinion, of course. :-) $.02, - ferg ps. I don't believe in 'self-defending' IPS autocracy stuff; you usually end up sepnding more time clearing auto traps as you do setting them up. :-) -- Gadi Evron <ge () linuxbox org> wrote: Fergie wrote: Hi Ferg, :)
All-in-all, I find that an IDS (NFR-style) has a quite useful utility.
How is it useful for your network? -- "Fergie", a.k.a. Paul Ferguson Engineering Architecture for the Internet fergdawg () netzero net or fergdawg () sbcglobal net ferg's tech blog: http://fergdawg.blogspot.com/
Current thread:
- recommendations regarding IPS Hegger, Stefan (Mar 31)
- Re: recommendations regarding IPS Robert E . Seastrom (Mar 31)
- Re: recommendations regarding IPS Hegger, Stefan (Mar 31)
- RE: recommendations regarding IPS Edward W. Ray (Mar 31)
- Re: recommendations regarding IPS Gadi Evron (Mar 31)
- RE: recommendations regarding IPS Edward W. Ray (Mar 31)
- Re: recommendations regarding IPS Hegger, Stefan (Mar 31)
- Re: recommendations regarding IPS Valdis . Kletnieks (Mar 31)
- Re: recommendations regarding IPS Robert E . Seastrom (Mar 31)
- <Possible follow-ups>
- Re: recommendations regarding IPS Fergie (Mar 31)
- Re: recommendations regarding IPS Gadi Evron (Mar 31)
- Re: recommendations regarding IPS Fergie (Mar 31)