Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

RE: IDSs/IPSs and general monitoring with SNMP support built in

Subject: RE: IDSs/IPSs and general monitoring with SNMP support built in
Date: Tue, 26 Jun 2007 08:42:06 +0100
Most of the commercial offerings will do this.  However, a decision you have
to make is do you want the traps to be sent from the agent or the manager,
there are advantages to both.  

I would suggest that you look at the Security Information Managers SIM
products and see what IDS and IPS they are compatible with.  Some do have
bespoke API's though most rely on input via SNMP.  Use their compatible
products list to narrow down your selection

Regards
Andy Cuff
Computer Network Defence Ltd
www.SecurityWizardry.com

-----Original Message-----
From: listbounce@securityfocus.com 
[mailto:listbounce@securityfocus.com] On Behalf Of Linux Security
Sent: 25 June 2007 20:16
To: security-basics@securityfocus.com
Subject: IDSs/IPSs and general monitoring with SNMP support built in

Hi All,
 

I am trying to find open source IDSs/IPSs that can send SNMP 
traps. The idea behind this is that there will be a 
centralised system that will be receiving SNMP traps from our 
Linux servers and will be doing the reporting. I am looking 
as I write this post to aide, tripwire, chkrootkit, rkhunter 
and still haven't find a way for them to send notifications 
with snmp traps...
 

Any ideas?



      ___________________________________________________________
Yahoo! Answers - Got a question? Someone out there knows the 
answer. Try it now.
http://uk.answers.yahoo.com/ 




<Prev in Thread] Current Thread [Next in Thread>