On Sun, 10 Sep 2000, Ron DuFresne wrote:

> On Wed, 6 Sep 2000, Aaron Schultz wrote:
> > On Wed, 6 Sep 2000, Matthew Reams wrote:
> > If you only want to hide ports of cerain machines, etc ipchains works
> > fine.  If you have more advanced requirements or want something that will
> > watch for trends you may want to look into commercial products.
> Can you expound upon the 'watch for trends' statement?

Some of the commercial products, such as Computer Associates' E-trust
suite claim that they can watch for what is "regular" traffic and notice
based on that, when something is out of the ordinary.  I've even heard of
people using their products to evaluate trends to estimate when their next
e-mail will be delivered.

Besides watching for trends, some of the commercial firewalls perform the
network-based detection of possible attack packets and stop them rather
than simply "watching the network" and paging someone about attacks.

- Aaron Schultz
- [EMAIL PROTECTED]
------

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to