And for those of us that do not have clustered firewalls or HA, or even multiple event collectors and consoles, we will be happy to see the simplified OPSEC implementation. To repeat what others have said so eloquently, RSKill is not the best way for an IDS to respond to perceived or detected threats. Without real world implementation guides OPSEC is vaporware, used to sell products not secure networks.
Mick Toothaker -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Monday, October 07, 2002 11:51 AM To: [EMAIL PROTECTED] Subject: RE: [ISSForum] RE: Configuring RealSecure to use OPSEC with FireW all-1 I am currently working with CheckPoint's bench engineers on this issue. We use clusted firewalls so there are some issues involved. When I find out anything I will post it to the forum. Neil _______________________________________________ ISSforum mailing list [EMAIL PROTECTED] _______________________________________________ ISSforum mailing list [EMAIL PROTECTED]
