Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 3 May 2000 16:26:19 -0500 
From:      John.VanHouten@hurlburt.af.mil
To:        freebsd-questions@FreeBSD.ORG
Subject:   Question:  Best IDS?
Message-ID:  <856532CB07BED3118FE300204840E28ACE4483@vexwncc02.hurlburt.af.mil>

next in thread | raw e-mail | index | archive | help
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi all....

I am really looking for opinions from this forum of individuals
regarding use of IDS (Intrusion Detection Systems) on a FBSD box.   
Which application is best for this purpose?  Both commercial and open
source?

I presently run Tripwire daily, as well as a little perl script which
runs through /var/log/messages looking for 'odd' activity... and of
course the 'daily run' information FBSD provides, syslog, etc etc.  

I also run Nessus and SARA weekly on my machines - just to be sure.  

What I would like is a good IDS package, and I am sure each one of you
has their own idea of what is the best and why. 
While this is not FreeBSD specific, I have always respected the
opinions of those that contribute to this list.  If you think
something is hot, I am sure it is.   

Thanks in advance guys.

Cheers!

- --John 
 

-----BEGIN PGP SIGNATURE-----
Version: PGPfreeware 6.0.2 for non-commercial use <http://www.pgp.com>;

iQA/AwUBORCbD1ufg9eYiuqZEQLmWwCfebw/A9XwOITg2gebgOd3CqdV0PcAoOUs
o5NbtbkNdN2qik2sMDvFgwJ9
=h/mL
-----END PGP SIGNATURE-----


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?856532CB07BED3118FE300204840E28ACE4483>