
[ Home | Liste | F.A.Q. |
Risorse | Cerca... ]
Archivio: Giugno 2003 ml@sikurezza.org Soggetto: R: IDS Vs Firewall, Mittente: Daniele Besana Data: 20 Jun 2003 12:02:52 -0000
Ciao, guarda la risposta di uno che di IDS se ne intende ;-) cioè il creatore di Snort. http://www.snort.org/marty/1055370702.html Ciao! --- Daniele Besana IT Virtual Community www.itvirtualcommunity.net > -----Messaggio originale----- > Da: Andrea Iacopini [mailto:andrea.iacopini@realtech.it] > Inviato: mercoledì 18 giugno 2003 11.14 > A: ml@sikurezza.org > Oggetto: IDS Vs Firewall, > Priorità: Alta > > > Ciao, > segnalo quest'articolo di GartnerGroup, > http://www.gartner.com/5_about/press_releases/pr11june2003c.jsp . > Brevemente: > ***** > Protecting enterprises from hackers, viruses and other security > vulnerabilities is a primary concern for all IS departments, and many > have relied on intrusion detection systems (IDSs) as a solution. > However, according to the Gartner, Inc. Information Security Hype Cycle, > IDSs have failed to provide value relative to its costs and will be > obsolete by 2005. > ...[cut]... > Intrusion detection systems are a market failure, and vendors are now > hyping intrusion prevention systems, which have also stalled," said > Richard Stiennon, research vice president for Gartner. "Functionality is > moving into firewalls, which will perform deep packet inspection for > content and malicious traffic blocking, as well as antivirus > activities." > According to the Gartner Information Security Hype Cycle research, some > of the problems associated with IDSs are: > - False positives and negatives > - An increased burden on the IS organization by requiring full-time > monitoring (24 hours a day, seven days a week, 365 days a year) > - A taxing incident-response process > - An inability to monitor traffic at transmission rates greater than > 600 megabits per second > ***** > Un vero problema non riuscire a monitorare trasmissioni maggiori di > 600Mbits/sec.... > Che ne pensate ? > Regards, > > A. > ======================================================================== > Andrea Iacopini, > Technology Solutions, Networking and Security Competence Center > > REALTECH Italia S.p.A. - Technology drives e-Business > Via Paolo di Dono, 73 - 00142 Roma, Italy > > andrea.iacopini@realtech.it > Mobile + 39 335 123.44.93 > Tel. +39 06 51.95.981, Fax. +39 06 51.96.36.74 > ======================================================================== > Valued IEEE Member, > Member NO: 41412812 > Real hackers don't die, just their TTL expires. [Unknown] > > > > ________________________________________________________ > http://www.sikurezza.org - Italian Security Mailing List > ________________________________________________________ http://www.sikurezza.org - Italian Security Mailing List
[ Home | Liste | F.A.Q. |
Risorse | Cerca... ]
www.sikurezza.org - Italian Security Mailing List
(c) 1999-2005