TIP: Click on subject to list as thread! ANSI
echo: nthelp
to: NL
from: Gary
date: 2002-10-26 12:51:42
subject: Re: LANmonitor `Thermostats`

From: "Gary" 

We ar in the process of evaluating this currently:

http://shopip.com/index.html

It uses Snort rules and dynamically blocks & reports attacks. It runs
on BSD and no knowedge of unis is needed (web interface) So far it seems to
be a very cool device and was developed by one of our clients.


"Jan van Hoek (NL)"  wrote in
message news:VA.00000191.005d4b21{at}xs4alldot.nl...
> >> can it do anything useful like
> >> dynamically adjust filters
> >> to block attacking sources?
>
> The short answer is NO. Consider Snort as being just a highly
> specialized network sniffer. It just listens, and it records and
> analyses the traffic, no more no less.
>
> OTOH I know of ISS Realsecure that it can communicate with the
> firewall, and let the firewall take action. I do not know whether
> Snort can do something like that.
>
> IAC the firewall is in the right position for traffic blocking,
> since all data communications go right through it. This it not the
> case for a sniffer like device (like Snort or any other IDS) that
> just watches the traffic passing by.
>
>  -- Jan van Hoek (NL)
>  -- Thu, 17 Oct 2002 02:28 CET
>
>

--- BBBS/NT v4.01 Flag-4
* Origin: Barktopia BBS Site http://HarborWebs.com:8081 (1:379/1.45)
SEEN-BY: 3/2 10 106/1 120/544 123/500 379/1 633/260 267 270 285 774/0 605
SEEN-BY: 2432/200
@PATH: 379/1 106/1 123/500 774/605 633/260 285

SOURCE: echomail via fidonet.ozzmosis.com

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.