An intrusion detection system – or IDS – is a high-tech burglar alarm, keeping a watchful eye on your computer and alerting when computer or network activity indicates unauthorised or malicious ...
In a column about syslog [see “syslog Configuration” in the December 2001 issue of LJ] I mentioned “stealth logging”--by running your central log server without an IP address, you can hide your ...
Snort, with its funny name, has three primary operating modes. The first two are not really intrusion-related and merely reads network packets received and displays them on-screen or to disk. In these ...