Firewall Wizards mailing list archives

RE: Intrusion Detection Systems, Best of breed?


From: "Marcus J. Ranum" <mjr () nfr com>
Date: Wed, 26 Dec 2001 10:58:23 -0500

Ofir Arkin wrote:
If they go to the real site and than in another session they try to
attack it and get redirected to another host using another stack it will
be obvious some one if fooling them.

Of course it will!!  But by then it will also be obvious to them that
you're on to them! For me to fool with you, I have to have detected you...

By the time they figure it out, they already know they've lost Round #1. Sure
they can come back for Round #2 but I'm not unhappy to have won the first
round. :)

mjr.
---
Marcus J. Ranum          Chief Technology Officer, NFR Security, Inc.
Work:                           http://www.nfr.com
Personal:                      http://www.ranum.com

_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://list.nfr.com/mailman/listinfo/firewall-wizards


Current thread: