snort or tripwire, which is best?

This is a discussion on snort or tripwire, which is best? within the Linux Security forums, part of the System Security and Security Related category; On Wed, 07 Sep 2005 23:39:07 +0000, Pierre Asselin wrote: > Proteus <proteus@uselessemail.net> wrote: &...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #11 (permalink)  
Old 09-08-2005
Proteus
 
Posts: n/a
Default Re: snort or tripwire, which is best?

On Wed, 07 Sep 2005 23:39:07 +0000, Pierre Asselin wrote:

> Proteus <proteus@uselessemail.net> wrote:
>
>> I am not exactly sure what
>> a NAT router is-- is that something I should buy to replace my Linksys
>> router, and if so any recommended brand/models?

>
> NAT == Network Address Translation. Ten to one that your Linksys router
> is a NAT router. If it lets several computers share a single cable
> or modem without paying for multiple IP addresses, it's a NAT router.


Yup I guess it is. Does just that.

Reply With Quote
  #12 (permalink)  
Old 09-08-2005
Colin McKinnon
 
Posts: n/a
Default Re: snort or tripwire, which is best?

Stachu 'Dozzie' K. wrote:

>>>
>>> Neither. You don't need them.
>>>

>>
>> Is that supposed to be in jest?
>>

>
> And how would you like to make sure you don't have rootkits when you get
> one? Removing manually? Or maybe restore from backup?
>


You'll need to help me here Stachu - How exactly do you recover a
compromised system without an IDS?

C.
Reply With Quote
  #13 (permalink)  
Old 09-10-2005
Stachu 'Dozzie' K.
 
Posts: n/a
Default Re: snort or tripwire, which is best?

On 08.09.2005, Colin McKinnon <colin.thisisnotmysurname@ntlworld.deletemeunlessU RaBot.com> wrote:
> Stachu 'Dozzie' K. wrote:
>
>>>>
>>>> Neither. You don't need them.
>>>>
>>>
>>> Is that supposed to be in jest?
>>>

>>
>> And how would you like to make sure you don't have rootkits when you get
>> one? Removing manually? Or maybe restore from backup?
>>

>
> You'll need to help me here Stachu - How exactly do you recover a
> compromised system without an IDS?


Nice try, cutting off almost all my comments. Don't they call this
a "manipulation"?

Do *you* deploy IDS on *desktops*? Enlight me here: what are the
advantages of installing an IDS on a desktop instead of defending that
desktop earlier?

--
Feel free to correct my English
Stanislaw Klekot
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT +1. The time now is 09:46 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0