I was wondering what everyone is doing for network based intrusion detection? I am looking for something I can use on a University based system with approximately 15000 nodes with various flavors of Unix, Linux, Windows, Mac, etc. I do have access to the logs of all incoming traffic (Cisco netflow). Does anyone have any scripts they use to analyze the logs, ar know of any products that will do this? Thanks in advance for any help. Greg
- Re: Network based intrusion detection Greg
- Re: Network based intrusion detection Devdas Bhagat
- Re: Network based intrusion detection Benoit Joseph
- RE: Network based intrusion detection leon
- RE: Network based intrusion detection Jason Burzenski
- RE: Network based intrusion detection Robert D. Hughes
- Re: Network based intrusion detection CScott8989
- RE: Network based intrusion detection Mark Ng