Intrusion Detection Systems mailing list archives

Re[2]: IDS for Win2k


From: ting () yan com cn (Yan Ting)
Date: Wed, 29 Mar 2000 15:02:11 +0800


Archive: http://msgs.securepoint.com/ids
FAQ: http://www.ticm.com/kb/faq/idsfaq.html
IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
UNSUBSCRIBE: email "unsubscribe ids" to majordomo () uow edu au
Hello all,

I  will  wait  for  several months, after a lot of business has been transferred
into  Win2k,  then  some  hacker  groups  will  give win2k a shot. Then a lot of
online-news  sites  and  TVs  show  how the hackers attack Microsoft great toys-
win2k.  then a lot of IDS provider will jump out and "promise" in 3 months their
IDS product will put into market to defend hackers.

:-)

Tuesday, March 28, 2000, 7:29:24 PM, you wrote:

MFL> Archive: http://msgs.securepoint.com/ids
MFL> FAQ: http://www.ticm.com/kb/faq/idsfaq.html
MFL> IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
MFL> HELP: Having problems... email questions to ids-owner () uow edu au
MFL> NOTE: Remove this section from reply msgs otherwise the msg will bounce.
MFL> SPAM: DO NOT send unsolicted mail to this list.
MFL> UNSUBSCRIBE: email "unsubscribe ids" to majordomo () uow edu au
MFL> -----------------------------------------------------------------------------
MFL> Hi2all

MFL> 'On Earth' i would want to run a IDS on win2k for the same reasons i do it
MFL> for other OS's ... not too hard to understand...
MFL> I'll not use the win2k box in question to be a DNS server, so for what i
MFL> need it handle DNS enough.
MFL> And no, i didn't heard enough horror stories already, and i allways look for
MFL> new ones, else i get bored. Plus, i was even receiving trainning at Dracula
MFL> Castle (aka MC trainning), so when horror comes, i run to it, not run from
MFL> it. 

MFL> Now ... what about practical solutions? dear vendor list colleges? =]

MFL> Kind Regards
MFL> Fernando Martins
MFL> fmartins () pt imshealth com
MFL> http://www.imshealth.com

-----Original Message-----
From: Greg Shipley [SMTP:gshipley () neohapsis com]
Sent: Monday, March 27, 2000 23:21
To:   Martins, Fernando (Lisbon)
Cc:   ids () uow edu au
Subject:      Re: IDS: IDS for Win2k



On Mon, 27 Mar 2000, Martins, Fernando (Lisbon) wrote:

I wonder if there is allready available IDS's for Windows 2000 Servers? 
Any known NT version of a IDS tested on win2k?
It doesn't matter if it is freeware, shareware or comercial ... anything
that can work in win2k is wellcome =)
(info on other win2k security apps will be appreciated too)


Ok, I've got to ask - why on earth would you want to run an IDS on win2k?

Have you not heard enough horror stories already?  Hell, win2k can't even
handle DNS properly!!!!  Or at least, from a network perspective. 

If you are forced to deploy win2k I guess maybe having a host-based
product might be helpful.

Quivering at the thought,

-Greg




-- 
Best regards,
 Yan                            mailto:ting () yan com cn



Current thread: