IDS mailing list archives

RE: "False postive" database idea


From: "Anton A. Chuvakin" <anton () chuvakin org>
Date: Tue, 30 Sep 2003 11:03:14 -0400 (EDT)

them.  Is there a risk that certain end-user agreements could be so
restrictive as to prohibit sharing this form of information publicly?
Hmm, I would suspect some NIDS vendors will not be happy about folks
showing their signatures, but I doubt saying 'oh, this and that NIDS
produces a "false positive" under such and such circumstances' can be
censored. But then again - maybe it violates DMCA - one can never tell,
right? :-)

-- 
  Anton A. Chuvakin, Ph.D., GCI*
     http://www.chuvakin.org
   http://www.info-secure.org


---------------------------------------------------------------------------
Captus Networks IPS 4000
Intrusion Prevention and Traffic Shaping Technology to: 
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans
 - Automatically Control P2P, IM and Spam Traffic
 - Precisely Define and Implement Network Security & Performance Policies
FREE Vulnerability Assessment Toolkit - WhitePapers - Live Demo 
http://www.securityfocus.com/sponsor/CaptusNetworks_focus-ids_000101
---------------------------------------------------------------------------


Current thread: