Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email firstname.lastname@example.org
From: Mark Teicher (mark.teicherNETWORKICE.COM)
Date: Tue Jan 16 2001 - 10:25:41 CST
One should always be able to fine tune an IDS, that is the hardest part of
implementing an IDS package into an environment. Tuing as in being able to
change an alert severity level, being able to build a rudimentary
correlation event engine so that when certain events happen, designated
people are notified, etc, etc.
If you are in environment that already has P0rn control, why does one need
to have the P0rn URL's enabled??
From: Adams, Gavin [mailto:gadamspromisant.com]
Sent: Tuesday, January 16, 2001 8:25 AM
To: Mark Teicher; FOCUS-IDSSECURITYFOCUS.COM
Subject: RE: Re: SHADOW Discussion Lists
Not a high-traffic group, but Ron & Co. do respond quickly. Wait, you
*can* fine tune Squire?!!!! :)