Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




focus-ids logo IDS mailing list archives

Re: High availability design of NIDS
From: Jon Hart <warchild () spoofed org>
Date: Wed, 23 Feb 2005 14:43:41 -0500

On Tue, Feb 22, 2005 at 03:47:03PM -0600, Michael Allgeier wrote:
OpenBSD + CARP + snort = failover NIDS

Only partially true -- CARP will only allow you to do IP failover.  But
that won't help you if, say, the snort process dies or is otherwise
unreachable. That situation should be fairly rare, but it is something
to consider.

-jon

--------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it with real-world attacks from 
CORE IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 
to learn more.
--------------------------------------------------------------------------


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]