On Sun, 26 Apr 2009, bofh wrote:
Anyone who puts in an inline IDS is a damned idiot. D stands for detection, so you should always use a tap or something else. Only IPS should be inline.
I know of inline IDS systems that work, but they're custom hardware solutions running on FPGA based cards, Virtex IV for example. diana

