Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Focus-IDS
[Top] [All Lists]

RE: [lists] New IPS testing methodology

Subject: RE: [lists] New IPS testing methodology
Date: Fri, 13 Oct 2006 05:05:23 -0400
I am very glad to see ISS Proventia certified.  I am currently taking the
Basic and Advanced Proventia class followed by the Internet Scanner class.
The Fusion Module that unites the VA data with the IPS to reduce false
positives is an amazing product.  Now that IBM has bought ISS and will
incorporate it along with the acquired SIM, neuSecure (now TSOM) is our
answer to continual monitoring and protection of the network and servers
(with ISS HIDS).

Curt Purdy CISSP, GSNA, GSEC, CNE, MCSE+I, CCDA
Manager Information Security 
CareFirst BlueCross BlueShield 
curt.purdy@.carefirst.com
443.846.4231


-----Original Message-----
From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com] On
Behalf Of Bob Walder
Sent: Tuesday, October 10, 2006 9:19 AM
To: Focus-Ids Mailing List
Subject: [lists] New IPS testing methodology

For those of you who are interested, we have launched our new IPS testing
methodology which includes more extensive security coverage testing, evasion
testing and performance testing than previously, as well as formalising the
testing of the management capabilities, etc.

The format of the test reports has been streamlined to try and make them
easier to read and to relate the descriptive test directly to the
methodology. This should make it easier to compare different
reports/products. 

Biggest news is that the ENTIRE test report - including all the benchmark
tables, etc. - is now available on-line for free download (no registration).
The first products have now been certified and the results are available
on-line at the following links:

http://www.nss.co.uk/certification/ips/certips.htm
http://www.nss.co.uk/certification/ips/certipsresults.htm

As you will see, all of the certification programs are ongoing throughout
the year now - we intend to collect a number of the results together with
some analysis in a group test report every so often

I hope you find the individual test reports useful - many vendors are signed
up for both IPS and Multi-Gigabit IPS testing and the results will be
published as the testing of each product is completed.

Bob Walder
The NSS Group






------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it with real-world attacks from CORE
IMPACT.
Go to
http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=in
tro_sfw
to learn more.
------------------------------------------------------------------------






------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it 
with real-world attacks from CORE IMPACT.
Go to 
http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw
 
to learn more.
------------------------------------------------------------------------

<Prev in Thread] Current Thread [Next in Thread>