Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: IPS Reliability/Availability |
|---|---|
| Date: | Mon, 6 Feb 2006 08:04:30 -0800 |
Most of these devices are pretty good for reliability. The only exception I would make is SourceFire, which back when we sold it had abysmal reliability (3 out of 4 boxes we sold to a customer show up dead or died soon after installation). TippingPoint sells a zero-power bypass add-on for their IPS. If the IPS fails in anyway, traffic is passed through the zero-power device. Its very easy to add. Juniper does something similar. ----------------------------------------------- Andrew Plato, CISSP, CISM President/Principal Consultant Anitian Enterprise Security ----------------------------------------------- -----Original Message----- From: geek_brigades@yahoo.com [mailto:geek_brigades@yahoo.com] Sent: Thursday, February 02, 2006 8:27 AM To: focus-ids@securityfocus.com Subject: IPS Reliability/Availability I am working on a big IPS project and I am very concerned about installing an inline device in a core enterprise network, where these devices have the potential to create big time network outages. Can you, please, share your possible bad experiences about the reliability of the following inline IPS products: ISS TippingPoint Juniper IPS Sourcefire McAfee IntruShield Have you had any issues with the availability of these devices, such as fail close crashes or do you have any experience with bypass switches that would mitigate the availability issue? Thanks, Mike ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. ------------------------------------------------------------------------ _________________________________________________ NOTICE: This email may contain confidential information, and is for the sole use of the intended recipient. If you are not the intended recipient, please reply to the message and inform the sender of the error and delete the email and any attachments from your computer. _________________________________________________ ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. ------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: anomaly IDS ideas ?, Christian G. Charette |
|---|---|
| Next by Date: | RE: Network World IPS Review Invitation - calling all IPS vendors!, Andrew Plato |
| Previous by Thread: | RE: IPS Reliability/Availability, CraigPaterson |
| Next by Thread: | Re: IPS Reliability/Availability, David Williams |
| Indexes: | [Date] [Thread] [Top] [All Lists] |