NO! Pay attention IDS!

While it isn’t the newest article (though it is pretty new), Dan Parker and Ryan Wegner have put an awesome piece together titled, “Integrating More Ingelligence into your IDS.” This 2 part article provides a lot of insight as to what can be done to fine tune an IDS.

The more an intrusion detection system (IDS) knows about the network it is trying to protect, the better it will be able to protect the network. This is the fundamental principle behind target-based intrusion detection, where an IDS knows about the hosts on the network.

And that is exactly what is discussed. Why post this? I feel that it is an excellent resource which can help beginners understand how an IDS does what it does and gives some tips for people that might be pros.

Be sure to check it out in its entirety. Part 1 Part 2.

~ by ohsoninja on May 4, 2008.

Leave a Reply