|
|
| Title |
Contributor |
Date |
Description |
Rating |
|
Five IDS Mistakes People Make |
Anton Chuvakin |
01/11/03 |
Reviews several important mistakes made by companies when planning and deploying IDS systems, including using NIDS but with limited scope, unchecked alerts, no response policy for events and more. |
6 |
|
Hiding an Intrusion Detection System, A Theoretical Discussion on How to Play 'Hide 'N Go Peek' |
Bob Radvanovsky |
13/03/04 |
Discusses the caveats of emplacement of an IDS environment, and what companies are doing about it. Discussion over what may be one (of many) possible method of 'hiding' an intrusion detection system environment. |
5 |
|
Tripwire Intro on Linux |
Charles Hornat |
15/09/02 |
What Tripwire is, how it is installed and used on Linux. This guide provides you with the basics needed for simple monitoring of your system. |
9 |
|
Detecting Intrusions with your Firewall Log and OsHids |
Daniel B. Cid |
28/11/03 |
Talks about one of the basics, but powerful methods of Intrusion Detection: Firewall’s Log analysis and the use of the OsHids tool to monitor your logs. |
7 |
|
Log Analysis for Intrusion Detection |
Daniel B. Cid |
26/05/06 |
The main goal of this document, submitted by Daniel Cid, is to show how some threats can be detected by correlating specific patterns on web, proxy and authentication logs. |
9 |
|
Future of IDS |
Joe Bowling |
28/10/03 |
Provides an overview of TCP/IP, covers the purpose and the history behind IDS, and current day functionality/challenges of this technology. The highlight of the paper covers how problems of today’s IDS will be met in the future in terms of interoperability, responsiveness and more. |
9 |
|
Improving the Database Logging Performance of the Snort Network Intrusion Detection Sensor |
Lambert Schaelicke |
11/12/03 |
Presents and evaluates a performance optimization technique that caches the contents of a database table to reduce the number of queries. When applied to the Snort intrusion detection sensor and the ACID database, this technique reduces alert logging overhead by 25 percent. |
7 |
|
Snort Install Manual |
Patrick Harper |
23/09/03 |
A guide to installing Snort on a Linux machine along with basic configuration and troubleshooting. As the author said, it’s a “How in the hell do I get this installed and working” guide. |
10 |
|
Airids Architecture And Methodology |
Thomas Munn |
01/10/03 |
A hybridized IDS framework that tries to fuse different technologies into an Intelligent Intrusion Prevention system, called 'Airids' for short. |
9 |
|
|