Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Pen-Test
[Top] [All Lists]

RE: IPS Comparison

Subject: RE: IPS Comparison
Date: Tue, 26 Jul 2005 04:43:55 -0500
Actually, any IPS that is deployed as a Syn-Proxy in Bridging mode has this
same functionality, there are several out that perform this function and
don't even bother to mention it as it has become standard fare.  One that
I'm very familiar with that does market this feature is Melior, Inc.'s
Barbican appliance www.ddos.com , they call it "cloaking".  This is also
their primary method for defeating pen-test attempts.  All of these
appliances are known to be limited in the number of TCP connections they can
handle and are primarily solutions for smaller enterprises, hence the
evolution of ASIC solutions for the larger enterprise.  My favorite
Intel/*nix inline solution these days is Reflex Security; I've implemented
it at small and mid-size banks, and to date it has been the most effective,
simplest and least expensive solution for IDS/IPS that I've encountered; my
customers love it.  www.reflexsecurity.com

The IDS focus list has covered IPS questions such as IP or no IP very
extensively, you'd very well served by scanning that list for related
discussions as many of the vendors' CTOs have chimed in to discuss the logic
behind their chosen configurations and most importantly their customers as
well.

-MD

Feel free to ask me offlist about the best kept secret in Certification
Training CertTest.com CISSP, PMP, CISA/CISM, NSA IAM/IEM, BCP.  If you or
your people need to Cert up, this is the place to go.  Their HQ office is
right next door to me, I've seen first hand what a crack job these guys do.

-----Original Message-----
From: Darwin [mailto:dlmecham@gmail.com] 
Sent: Monday, July 25, 2005 11:56 PM
To: pen-test@securityfocus.com
Subject: IPS Comparison

Hi,

Regarding IPS proucts.

Take a look at http://www.nitrosecurity.com
This IPS is deployed without an IP address making it invisible.


Best Regards,

Darwin Mecham, CISSP


<Prev in Thread] Current Thread [Next in Thread>