cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
400
Views
0
Helpful
1
Replies

PIX 515E good enough IDS for small biz? Updateable?

benhanson
Level 1
Level 1

We use a PIX 515E for our firewall and I'd like to find out what IDS functionality it has. Do I need to use another tool to update signatures and view logs? Is this really a suitable solution for a small business?

1 Reply 1

flyingmunk
Level 1
Level 1

the pix has a limited signature set. i believe it is somewhere around 53, where as, the ids appliance is something like 800+, with the ability to write custom sigs.

there is no way to update these signatures on the pix, they are embedded in the pix code itself. as far as viewing the alerts, these are basically syslogs.

your second question is a subjective question. is this a suitable solution. your pix should protect your network pretty well, this really depends on what ports you are allowing inbound.

if you want to try an opensource ids solution, take a look at snort. (www.snort.org). as for a cisco appliance, a lower end 4215 would probably be suitable for a small business, and it shouldn't break your IT bank.

regards,

chris

Review Cisco Networking for a $25 gift card