Snort mailing list archives

Re: Rm: Combine NIDS with HIDS


From: Matt Watchinski <mwatchinski () sourcefire com>
Date: Sun, 31 May 2009 12:01:21 -0400

You should check out splunk (www.splunk.com)

On Sat, May 30, 2009 at 12:52 PM, Cesar Farro Flores
<cesar.farro () t-empresas com pe> wrote:

Hi List,

I have to send security informational of : IDS (03 Snort and 02
ISS-Proventia),  Firewalls(03 CheckPoint), Proxy (02 ISA-2006), Web App
( ISS and Apache), DB to the SIEM, Can you recomend me some SIEM open
source ?

I will appreciate your help.

CF,


----- Remitido por Cesar Farro Flores/TDPE/TDP con fecha 30/05/2009 11:48
a.m. -----

            omar hussein
            <omar811128@gmail
            .com>                            Para
                                      snort-users
            30/05/2009 10:46          @lists.sour
            a.m.                      ceforge.net
                                               cc

                                           Asunto
                                      [Snort-user
                                      s] Combine
                                      NIDS with
                                      HIDS






                              Información:  No
                              Clasificada





Hello gentleman,


I was wondering of the ability of combining SNORT which is NIDS with HIDS
software, and make both works on the same system?





And is this going to be useful and provide more security? i'm sure that
will depend on the mechanism that both software’s are going to use in order
to cooperate between each other. Like using the alarms resulted from one
software (like HIDS) and check it again by NIDS or vice versa.

Kindest Regards
Omar
MSc Wireless Commincations systems
London

------------------------------------------------------------------------------

Register Now for Creativity and Technology (CaT), June 3rd, NYC. CaT
is a gathering of tech-side developers & brand creativity professionals.
Meet
the minds behind Google Creative Lab, Visual Complexity, Processing, &
iPhoneDevCamp as they present alongside digital heavyweights like Barbarian

Group, R/GA, & Big Spaceship. http://p.sf.net/sfu/creativitycat-com
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users
ForwardSourceID:NT0001024A
------------------------------------------------------------------------------
Register Now for Creativity and Technology (CaT), June 3rd, NYC. CaT
is a gathering of tech-side developers & brand creativity professionals. Meet
the minds behind Google Creative Lab, Visual Complexity, Processing, &
iPhoneDevCamp as they present alongside digital heavyweights like Barbarian
Group, R/GA, & Big Spaceship. http://p.sf.net/sfu/creativitycat-com
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users



-- 
Matthew Watchinski
Sr. Director Vulnerability Research Team (VRT)
Sourcefire, Inc.
Office: 410-423-1928
http://vrt-sourcefire.blogspot.com && http://www.snort.org/vrt/

------------------------------------------------------------------------------
Register Now for Creativity and Technology (CaT), June 3rd, NYC. CaT 
is a gathering of tech-side developers & brand creativity professionals. Meet
the minds behind Google Creative Lab, Visual Complexity, Processing, & 
iPhoneDevCamp as they present alongside digital heavyweights like Barbarian 
Group, R/GA, & Big Spaceship. http://p.sf.net/sfu/creativitycat-com 
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: