You could also try Dragon IDS from enterasys. http://dragon.enterasys.com It is ported on most OS's including Linux . I've deployed it on one of the biggest IDC's here in Philippines and it's performance is quite good :)

--------------> jOEl

At 11:43 AM 12/13/2001 +0800, you wrote:
On Wed, Dec 12, 2001 at 07:34:42PM -0800, the Four O Clock Project wrote:
> try the tcpdump approach. finetuning it would work wonders.


you need to be watching it though; what do you recommend for post-processing?

as for SNARE, it's really easy to install.  it's like process accounting on
steroids.



_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]

To subscribe to the Linux Newbies' List: send "subscribe" in the body to [EMAIL PROTECTED]


-------------------------------------------------------
Joel N. Eusebio
MIS/Technical Support Engineer
Commverge Solutions Philippines

11/F 6750 Ayala Avenue
Makati City, 1200 Philippines
Tel: +63 2 8931139
Fax: +63 2 8123122

Mobile: +63 917 8395009
Email: [EMAIL PROTECTED]
CCNA, MCP, Certified Linux Administrator
--------------------------------------------------------



Reply via email to