Security Basics mailing list archives

Need An Offline IDS For Windows NT/2000


From: "David Simcik" <dave () simcik com>
Date: Tue, 7 Jan 2003 10:30:10 -0500

Hiya,
        Forgive me if any of the terms I use sound a bit off-kilter. I don't have a
spare machine to use for a realtime network IDS, so I was wondering how I
could monitor/analyze traffic to NT/2000 servers offline (using logs,
database, etc. for storage). The really silly thing is that I don't know how
to log ALL network traffic hitting a Windows server.

Many Thanks,
David


Current thread: