[ Home | Liste | F.A.Q. | Risorse | Cerca... ]


[ Data: precedente | successivo | indice ] [ Argomento: precedente | successivo | indice ]


Archivio: Giugno 2003 ml@sikurezza.org
Soggetto: R: IDS Vs Firewall,
Mittente: Daniele Besana
Data: 20 Jun 2003 12:02:52 -0000
Ciao,
guarda la risposta di uno che di IDS se ne intende ;-) cioè il creatore di
Snort.
http://www.snort.org/marty/1055370702.html

Ciao!
---
Daniele Besana
IT Virtual Community
www.itvirtualcommunity.net


> -----Messaggio originale-----
> Da: Andrea Iacopini [mailto:andrea.iacopini@realtech.it]
> Inviato: mercoledì 18 giugno 2003 11.14
> A: ml@sikurezza.org
> Oggetto: IDS Vs Firewall,
> Priorità: Alta
>
>
> Ciao,
> segnalo quest'articolo di GartnerGroup,
> http://www.gartner.com/5_about/press_releases/pr11june2003c.jsp .
> Brevemente:
> *****
> Protecting enterprises from hackers, viruses and other security
> vulnerabilities is a primary concern for all IS departments, and many
> have relied on intrusion detection systems (IDSs) as a solution.
> However, according to the Gartner, Inc. Information Security Hype Cycle,
> IDSs have failed to provide value relative to its costs and will be
> obsolete by 2005.
> ...[cut]...
> Intrusion detection systems are a market failure, and vendors are now
> hyping intrusion prevention systems, which have also stalled," said
> Richard Stiennon, research vice president for Gartner. "Functionality is
> moving into firewalls, which will perform deep packet inspection for
> content and malicious traffic blocking, as well as antivirus
> activities."
> According to the Gartner Information Security Hype Cycle research, some
> of the problems associated with IDSs are:
>     - False positives and negatives
>     - An increased burden on the IS organization by requiring full-time
> monitoring (24 hours a day, seven days a week, 365 days a year)
>     - A taxing incident-response process
>     - An inability to monitor traffic at transmission rates greater than
> 600 megabits per second
> *****
> Un vero problema non riuscire a monitorare trasmissioni maggiori di
> 600Mbits/sec....
> Che ne pensate ?
> Regards,
>
> A.
> ========================================================================
> Andrea Iacopini,
> Technology Solutions, Networking and Security Competence Center
>
> REALTECH Italia S.p.A. - Technology drives e-Business
> Via Paolo di Dono, 73 - 00142 Roma, Italy
>
> andrea.iacopini@realtech.it
> Mobile + 39 335 123.44.93
> Tel. +39 06 51.95.981, Fax. +39 06 51.96.36.74
> ========================================================================
> Valued IEEE Member,
> Member NO: 41412812
> Real hackers don't die, just their TTL expires. [Unknown]
>
>
>
> ________________________________________________________
> http://www.sikurezza.org - Italian Security Mailing List
>


________________________________________________________
http://www.sikurezza.org - Italian Security Mailing List




[ Home | Liste | F.A.Q. | Risorse | Cerca... ]

www.sikurezza.org - Italian Security Mailing List
(c) 1999-2005