Penetration Testing mailing list archives
RE: IPS arguments
From: "JoePete" <securityfocus () joepete com>
Date: Sat, 21 Feb 2009 11:40:12 -0500
Compliance, ease of management, redundancy are all good reasons. I have to admit there is part of me that sides with your CIO here, not that I believe the CISCO IPS is superfluous, but that I want to hear from you (or any consultant) how that IPS combined with the bundle of tools I already have will increase the security of my operation. Pardon my bluntness here, but the fact that you are asking a listserv to explain/defend the implementation seems to imply that you are unsure (for whatever reason) as well. Implementation of a tool is far more critical than the actual tool itself. The CIO may just be making sure that he understands the capabilities and functions of that equipment before rushing ahead. -- Joe
-----Original Message----- From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On Behalf Of Hugo Vinicius Garcia Razera Sent: Saturday, February 14, 2009 9:35 AM To: pen-test () securityfocus com Subject: IPS arguments Hello Gentleman's, I have finished a penetration testing to a client like a month ago. The company i worked for used some practices that i don't agree with. that's one of the reasons i resigned. any way they managed to shell the audited company a CISCO IPS using the results of the pen test. Well the thing is that the CIO of that company is refusing to install the IPS on their network even after his company has already put a buy order for the equipment and said IPS is know on their building but he refuses to install such equipment, augmenting that it is totally unnecessary because they all ready have an Microsoft ISA server Firewall in place, and symantec enpoint protection on the clients machine. Can any one point me why, they need an IPS? The old company i worked for wants me to penetrate their network, to proof them they need an IPS . this time I'm thinking on deploying an old Trojan i coded. but i would like to have more compelling arguments on why some one needs an IPS thanks for the time replying to my questions Hugo
Current thread:
- Re: IPS arguments, (continued)
- Re: IPS arguments JiPi DiNi (Feb 20)
- RE: IPS arguments Shenk, Jerry A (Feb 20)
- Re: IPS arguments M.D.Mufambisi (Feb 20)
- Re: IPS arguments Micheal Cottingham (Feb 22)
- Re: IPS arguments Danny Fullerton (Feb 22)
- Re: IPS arguments Javier Reyna (Feb 26)
- Re: IPS arguments Trygve Aasheim (Feb 27)
- Re: IPS arguments Webmaster 003 (Feb 27)
- Re: IPS arguments Keith Pasley Com6 (Feb 22)
- Re: IPS arguments David Howe (Feb 22)
- RE: IPS arguments JoePete (Feb 22)
- Re: IPS arguments Adriel T. Desautels (Feb 26)
- Re: IPS arguments kellstr (Feb 20)