OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Symantec IDS Experts????????????????????
From: Ron Gula (rgulaNETWORK-DEFENSE.COM)
Date: Tue Oct 17 2000 - 18:45:05 CDT


Whoops! Sorry Elliot! I got your email response confused with
the original from Gene Gomez's. Thanks for a professional response
and not flaming me and sorry to those on the list who have promptly
had to delete this email. The original email I was referring to was
not from Elliot:

>>> From: "Gene R. Gomez" <ggomezVERANCE.COM>
    Subject: Re: Symantec IDS Experts????????????????????
    To: FOCUS-IDSSECURITYFOCUS.COM

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    Hey Elliot,
    I think that below you hit on a few things that are instrumental to
    explaining the original point in question: why do people not use
    open-source IDS?
    I've been playing with snort myself for a short while; I've found
    that it IS lacking in some of the advanced technical facilities
>>> (portscan detection, IP defrag, etc), but that, at the same time,
    such functionality is under development.

Ron Gula
Enterasys Networks