Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



IDS: RE: IDS on VPN-GW

RE: IDS on VPN-GW

From: Rob Shein <shoten_at_starpower.net>
Date: Mon, 2 Dec 2002 18:31:38 -0500

How well did Snort keep up, however? I can't believe it wasn't missing
packets at that point...

-----Original Message-----
From: Keith T. Morgan [mailto:keith.morgan_at_terradon.com]
Sent: Monday, December 02, 2002 10:05 AM
To: counter.spy_at_gmx.de
Cc: focus-ids_at_securityfocus.com
Subject: RE: IDS on VPN-GW

We've deployed this scenario on Linux + Free S/Wan running snort on all
physical interfaces and all ipsecX interfaces for folks. The fastest
wire-speed we've had on one of these deployments is T1, and a PIII450
has handled VPN traffic at wirespeed even with the added load of snort.
Sorry I don't have any higher-bandwidth benchmarks for you.

-----Original Message-----
From: counter.spy_at_gmx.de [mailto:counter.spy_at_gmx.de]
Sent: Friday, November 29, 2002 4:20 AM
To: focus-ids_at_securityfocus.com
Subject: IDS on VPN-GW

Hi folks,
I have recently tested snort on a vpn-gateway that runs on linux (just
for testing purposes, no productive server).
Received on Dec 04 2002

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos