Hi Gopi,
If you want to do it 100% passively, our company, Tenable Network
Security, sells a product to do this. It used to be called "NeVO"
but it has been re-branded to the "Passive Vulnerability Scanner".
Basically, it is a sniffer that looks for vulnerable client/server
devices and network changes. You can see a video demo of it here
at:
http://www.tenablesecurity.com/demos/videos.shtml
Look at the 'passive monitoring' video.
Ron Gula
Tenable Network Security
At 01:57 AM 7/3/2006, Gopinath_Ramamoorthy_at_satyam.com wrote:
>Dear Team...
>
>I have used few IDS in my network, doesn't found them working in the
>way i wanted.
>
>My requirement is when there is a machine / laptop are connected to
>my network, which is not updated with the current Patches, Security
>updates which is being approved needs to be reported to the Sys
>admin and immediate necessary steps would be taken.
>
>Is it possible to have this & if so suggest me the options pls.
>
>
>Regards,
>
>Gopi
------------------------------------------------------------------------
Test Your IDS
Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
to learn more.
------------------------------------------------------------------------
Received on Jul 05 2006