Intrusion Detection Systems mailing list archives

Re: Ramping up for another review


From: blue0ne () igloo org (Jackie Chan)
Date: Wed, 5 Jul 2000 15:09:49 -0400 (EDT)


Archive: http://msgs.securepoint.com/ids
FAQ: http://www.ticm.com/kb/faq/idsfaq.html
IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
UNSUBSCRIBE: email "unsubscribe ids" to majordomo () uow edu au
Greg,
        How about some data on correlation of events?  That is my wish
list for your article.

-blue0ne

On Wed, 5 Jul 2000, Greg Shipley wrote:

Archive: http://msgs.securepoint.com/ids
FAQ: http://www.ticm.com/kb/faq/idsfaq.html
IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
HELP: Having problems... email questions to ids-owner () uow edu au
NOTE: Remove this section from reply msgs otherwise the msg will bounce.
SPAM: DO NOT send unsolicted mail to this list.
UNSUBSCRIBE: email "unsubscribe ids" to majordomo () uow edu au
-----------------------------------------------------------------------------

Ok, it's that time again.  Time when I go stock up on Red Bull, re-tool the 
Network Computing Chicago lab, get some serious IDS products in and start 
going to town.  This year its going to be a little different, however, as 
I'm going to be doing this "review" in stages, and this field has gotten 
way to big to a) compare all of these products as apples to apples and b) 
cover all of the topic areas in under 5,000 words.

Yup - time for another round of IDS reviewing.  I'm thinking of sending 
invite letters to the following:

Network Security Wizards:
  - the Dragon "suite"

ISS
  - RealSecure
  - Decisions

Axent
  - NetProwler
  - Intruder Alert

NAI
  - Cybercop monitor

Cisco
  - NetRanger
  - What's in the IOS builds

Hiverworld
  - forget the name, but it looks and sounds cool

NFR

Intrusion.com (was ODS)
  - the Kane stuff (was CMDS, and some others)

NetworkICE
  - BlackICE

CyberSafe
- Centrax

So my question is - am I missing anyone?  (and don't say SNORT - I'm on 
that, but it doesn't quite fit here).  Also, I asked this last year and no 
one responded: what do you guys want to see covered that hasn't been in the 
past?

Feedback wanted,

-Greg



Current thread: