Re: CRIME Does anyone have any tips on Intrusion Detection with Solaris?

From: Tim Kramer (kramert@private)
Date: Thu Aug 01 2002 - 05:26:56 PDT

  • Next message: Tim Kramer: "RE: CRIME Sircam making a comeback"

    Regardless of which IDS you end up using, ensure that
    your IDS admin has the training/knowledge to properly
    manage the darn thing.  Initially, you will get false
    positives.  An untrained person will just turn off the
    noisy rule rather than tuning it.
    
    - Tim
    
    On Wed, 2002-07-31 at 20:20, Eric Kornberg wrote:
    > Thank you in advance.
    > As a second choice - we could use Linux.
    > 
    > 
    > 
    > Eric Kornberg - ViableLinks
    > National Account Manager
    > 7409 SW Tech Center Drive
    > Tigard, Oregon 97223
    > (503) 670-8007 Voice
    > (503) 639-0530 Fax
    > (503) 407-7973 Cell
    > ekornberg@private
    > www.viablelinks.com
    > 
    > 
    > 
    > ----------------------------------------------------------------------------
    > ---------------
    > VIABLELINKS is a reseller for HP/Compaq - IBM - Toshiba - Lexmark - Sony -
    > Okidata and More.
    > A Service Center for HP/Compaq - Toshiba - Dell - IBM - Lexmark and Okidata.
    > With a Technical Services Department - Field to Enterprise Technicians
    > ----------------------------------------------------------------------------
    > ---------------
    > 
    



    This archive was generated by hypermail 2b30 : Thu Aug 01 2002 - 06:26:59 PDT