OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Francisco Saa Munoz (fsaacibersecurity.com)
Date: Thu Jan 24 2002 - 12:08:29 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Chad Gough wrote:

    > Does anyone know of any good tools that can generate alot of network
    > traffic to see at what point an IDS starts dropping packets?

    Normally I use a 'megamix' of tools like tcpblast to probing network
    and estimating its throughoutput.
    Also a set of scanners (nessus, vetescan, etc) and DoS (bubonic, land...)
    probes at the same time, to calculate the ability of IDS to block all
    kind of packets, normally the packets are coming from a random IP (spoofed
    o.c.)to probe he speed.

    Use this bestial probe under 1 minute, mixing the tools, with
    the power of bash script ;)

    Ah, and of course is a GNU/GPL set of tools _ALWAYS_, I spend 3 weeks to set
    the test ready for all environments. So I think all people can do it in
    less
    time than me.

    This is the way to exceed the limit.

    --
    Francisco Saa Munoz
    Security Consultant
    --
    Linux User #119288
    Proud mame.dk user #115087
    --
    "My english is poor, I know it"