Intrusion Detection Systems mailing list archives
Re: Good source of intrusion detection and response steps?
From: Philippe.Bourgeois () cnes fr (Philippe Bourgeois)
Date: Mon, 27 Mar 2000 12:23:47 +0200
Archive: http://msgs.securepoint.com/ids FAQ: http://www.ticm.com/kb/faq/idsfaq.html IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html UNSUBSCRIBE: email "unsubscribe ids" to majordomo () uow edu au Some additional resources. Most of them are out of the scope of this mailing-list (I think) ? I'm expecting that could help you anyway. Let me know if you know any other interesting resource about that subject. * How to deal with incidents : Responding to an incident : http://staff.washington.edu/dittrich/talks/security/response.html http://staff.washington.edu/dittrich/misc/faq/responding.faq Incident handling step by step : http://www.sans.org/y2k/DDoS.htm Is it relevant to perform a forensic analysis ? : http://www.forensic-computing.com/archives/vind.html Legal issues about forensics : http://www.sans.org - see "Intrusion Detection FAQ / What are some acceptable procedures [..] that will result in court-admissible evidence ?" * How to perform forensic analysis : Farmer and Venema : http://www.porcupine.org/book/courses/forensics Disk Examination procedure (on PC) : http://www.cops.org/procedure.html http://www.forensic-computing.com/archives/fundamentals.html *** Philippe Bourgeois
Current thread:
- Re: Good source of intrusion detection and response steps? Robert Graham (Mar 24)
- Re: Good source of intrusion detection and response steps? -reply mht () clark net (Mar 24)
- Re: Good source of intrusion detection and response steps? Matt Baney (Mar 24)
- Re: Good source of intrusion detection and response steps? Jackie Chan (Mar 24)
- Re: Good source of intrusion detection and response steps? Philippe Bourgeois (Mar 27)
- IDS for Win2k Martins, Fernando (Lisbon) (Mar 27)
- Re: IDS for Win2k Greg Shipley (Mar 27)
- Re: Good source of intrusion detection and response steps? Jackie Chan (Mar 24)
- a novice question. RajKumar S. (Mar 24)
- Re: a novice question. Jackie Chan (Mar 25)
- Re: a novice question. Stuart Staniford-Chen (Mar 25)
- Re: a novice question. Jackie Chan (Mar 25)
- Intruder Alert Chad Harrington (Mar 25)
- CERT advisories,.. Koriun Margaryan (Mar 28)
- RE: CERT advisories,.. Peter Kelly (Mar 28)
- Re: CERT advisories,.. Cliff Rayman (Mar 28)
