[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <4399924E.4010304@csuohio.edu>
Date: Fri Dec 9 14:20:51 2005
From: michael.holstein at csuohio.edu (Michael Holstein)
Subject: Snort as IDS/IPS in mission-critical enterprise
network
> If any of you can name any big network which is using Snort as an
> example, it will be very helpful.
/16 on a DS-3 here. Snort on a p4 3.2ghz box, with a fairly large
ruleset (not the whole thing, but all the VRT ones, plus a bunch of
bleeding ones, plus a bunch of overrides.
I have it configured to automatically shutdown infected ports (not
something it does natively .. a lot of Perl + MySQL + pixie dust).
Rock solid. Thanks Marty :)
Cheers,
Michael Holstein CISSP GCIA
Cleveland State University
Powered by blists - more mailing lists