Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: Denial of Service: Commercial Defense products |
|---|---|
| Date: | Wed, 23 Nov 2005 15:07:13 -0500 |
Riverhead (now Cisco Guard) is by far the best choice. We had a little in house shoot-out where we attacked multiple vendors' hardware and graphed their results into the millions of packets per second. Due to NDA's we are not allowed to disclose which vendors, nor their results, but I can say that Riverhead successfully defended against more than twice the load of its competitors...at the time it was able to stop approximately 1.5 million SYN packets per second while still allowing legitimate traffic. IMHO there is no other choice. --Joel -----Original Message----- From: Kyle Quest [mailto:Kyle.Quest@networkengines.com] Sent: Wednesday, November 23, 2005 2:42 PM To: focus-ids@securityfocus.com Subject: RE: Denial of Service: Commercial Defense products You should really look at Top Layer if you are serious about defending against denial of service attacks. Don't even waste your time on Mazu or McAfee. Tipping Point is suppose to get better at it as well (they were working on some news things the last time I had a chance to talk to one of their top guys), but I don't know if it's already available. I would recommend looking at the NSS reports (http://www.nss.co.uk/download/download.htm). Unfortunately, the online version of the report that includes Top Layer review is no longer available, but you can still buy it for a couple of bucks. Kyle -----Original Message----- From: Ogle [mailto:myinfosec@gmail.com] Sent: Tuesday, November 22, 2005 4:44 AM To: focus-ids@securityfocus.com Subject: Denial of Service: Commercial Defense products Hi, I have an ISP customer who want to protect their network and their subscriber's network. In "Internet Denial of Service: Attack and Defense Mecahnisms" book, I noticed 7 commercial products. 1. Mazu Enforcer by Mazu Networks 2. Peakflow by Arbor Networks 3. WS Series Apliances by Webscreen Technologies 4. Captus IPS by Captus Networks 5. MANAnet Shield by CS3 6. Cisco Traffic Anomaly Detector XT and Cisco Guard XT 7. StealthWatch by Lancope Since I'm new with this type of products, is there any reference out there to help me choose the right solution to my customer ? Is there any problem if I use IPS (ie: TippingPoint, McAfee) for this solution ? Thanks.
smime.p7s
Description: S/MIME cryptographic signature
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: Denial of Service: Commercial Defense products, Kyle Quest |
|---|---|
| Next by Date: | RE: Denial of Service: Commercial Defense products, Talisker |
| Previous by Thread: | RE: Denial of Service: Commercial Defense products, Kyle Quest |
| Next by Thread: | RE: Denial of Service: Commercial Defense products, FinAckSyn |
| Indexes: | [Date] [Thread] [Top] [All Lists] |