04-03-2001 08:08 PM - edited 02-20-2020 09:47 PM
Anyone out there using the new IDS features on a PIX?
How has it worked out?
Have you done any testing to ensure the IDS is catching attacks?
04-10-2001 07:52 AM
Weve also been considering IDS now that PIX supports it. Have you purchased it? Have you been running into any problems?
05-30-2001 07:27 PM
Ralph,
I did not use it yet.
But i think it can effect your pix in the performance since it would have to inspect every packet based on the imbedded signatures of its IOS.
As an alternative, get a separate unit to do IDS. for ex: you can get a linux box and run snort (free). It has i think over 300 signatures.
Yury
Medical informatics analyst
05-31-2001 11:46 AM
you get what you pay for (free -snort). yeah, thats exactly what I'd want to do, run my IDS on one of the world's most insecure OS's.
PIX IDS works fine and doesn't appear to slow down performance. If you want full featured IDS, get a full IDS sensor.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide