Security Basics mailing list archives

Re: is Checkpoint smart defance is enough ?


From: Rodrigo Blanco <rodrigo.blanco.r () gmail com>
Date: Thu, 4 Aug 2005 02:56:40 -0600

Hello,

I would say Firewall-1's Smart Defense s a good add-on on the
firewallng functionality, but it is not a dedicated IPS. Hence, its
capabilities are also not at the same level.

If you really need a good Intrusion Prevention device, I would go for
a standalone box such as McAfee Intrushield. If you are thinking of an
internal network, you could also take a look at CheckPoint Interspect.

Of course, this always depends on your budget (I tend to remember
Smart Defense comes in basic with FW-1 and it is not expensive to
obtain the upgrades), network topology and security requirements, but
if security is an issue, I would recommend deplying a specialized
device.

Best regards,
Rodrigo.

On 8/2/05, Juan B <juanbabi () yahoo com> wrote:
Hi,

I was wondering if I enable smartdafance on a network
so I can give up all the other IDS's like snort Iss
etc.

Is smartdefance considered as an IDS at all ?

thanks

Juan



____________________________________________________
Start your day with Yahoo! - make it your home page
http://www.yahoo.com/r/hs




Current thread: