[ale] Intrusion Detection. LIDS

Ned Williams nwilliams at interland.net
Mon Jul 30 13:53:58 EDT 2001


SAngell at nan.net wrote:

> Does anyone out there use Linux based Intrusion Detection to protect their
> network? If so what are you using and where are all the great resources? Do any
> have web management interfaces? Lastly, do they have the capability to generate
> reports? I currently have ISS real secure deployed along with Checkpoint FW-1
> and am in the process of adding an internal firewall running linux and would
> like to have an internal network sensor  on linux to monitor LAN for traffic
> outside of DMZ. Current network sensor is located between firewall and router
> and with the cost of the licensing for ISS I would like another option.
>
> Steve Angell,  MCSE, CCNA
> MIS Operations Manager
> TSYS Total Debt Management
> Phone 770-409-5570
> Fax      770-416-1752
>
> --
> To unsubscribe: mail majordomo at ale.org with "unsubscribe ale" in message body.

Why not look at turning on the SNMP function of your check point firewall and poll
it with MRTG,OpenView,Concord,UCD snmpget or other product. Build  your reports
from there.

Ned


--
To unsubscribe: mail majordomo at ale.org with "unsubscribe ale" in message body.





More information about the Ale mailing list