Security Basics mailing list archives

Re: Firewall / IDS for web db app site


From: crazy frog crazy frog <i.m.crazy.frog () gmail com>
Date: Wed, 2 Nov 2005 19:19:17 +0530

Hi,
the first thing is to secure your webapplication then think about IDS
and stuff.you can use various webapplication firewalls available to
prevent attacks like sql injection,xss,cookie hijacking,session
managment etc.
then for the IDS you can try snort.it is good.
regards
CF
--
ting ding ting ding ting ding
ting ding ting ding ding
i m crazy frog :)
"oh yeah oh yeah...
 another wannabe, in hackerland!!!"


On 31 Oct 2005 20:12:20 -0000, jp () sociustechnologies com
<jp () sociustechnologies com> wrote:
Hi all,

I'm building a .com project (web db style with e-commerce parts, looks like ColdFusion might be the tool we'll use) 
and I'm working on the architecture.

For the firewall / IDS part, I need advice.

I'm thinking either Cisco 506 or m0n0wall to protect the db server.  What about IDS - do I need it?  Snort a good 
choice?

Thanks!



Current thread: