Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: CISCOs new IPS |
|---|---|
| Date: | Thu, 16 Dec 2004 20:35:15 -0500 |
key things to consider: - increased packet latency through the IPS. this is worsened as you increase the number of things you detect and/or block - careful of false positives, so only block the minimum number of exploits (around 30 or so out of the entire base of things seem to operate.) - power redundancy and network failover are other considerations. - failure to detect at high packet rates or high mbps rates. you have to stress test this yourself and use your peak average network stats as the baseline for packet rates and mbps rates. some ips systems stop detecting attacks at higher packet and bandwidth rates. peter On Wed, 15 Dec 2004 07:31:42 +0100, Christoph Pertl (tm011081) <tm011081@fh-stpoelten.ac.at> wrote:
Hi, I'm right now in the middle of a Project with the goal to implement an IPS in an existing infrastructure. One of our possible Partners offers us the new IPS Product from Cisco. Does anyone of you now something about this machine or at least about the older IDS-Box because I think the Inspection Engine will be the same? Any Information about how well it performs in a real environment would be great Christoph -------------------------------------------------------------------------- Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. --------------------------------------------------------------------------
-------------------------------------------------------------------------- Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. --------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Domino Web Servers & HIDS, Nicholas Hunt |
|---|---|
| Next by Date: | AIDE Integrity System, Anderson|RootSec-Labs| |
| Previous by Thread: | CISCOs new IPS, Christoph Pertl (tm011081) |
| Next by Thread: | Tippingpoint IPS, Christoph Pertl(tm011081) |
| Indexes: | [Date] [Thread] [Top] [All Lists] |