Hi All! Please forgive the very newbie questions, but as the subject implies I am confused about the behavior of the Network Sensor. From what I have read, it seems that the network sensor is more or less passive. That is, it simply reads the network packets looking for problems. This is in contrast to the Internet Scanner which **actively** scans the network (i.e. port scans). (From the doc: "The network sensor monitors network packets to detect attacks or other security-related events.", and later "If you scan this network with Internet Scanner,...")
One reason I am asking (other than to learn more about the system) is that my boss said that the reason we have not implemented the network sensors is that they cause too much traffic on the network, which contradicts what I understand. So, I guess the big question as to whether or not the Network Sensor causing traffic problems on the network. Any help is greatly appreaciated. Regards, Jim Mohr ELAXY Brokerage & Trading GmbH & Co KG _________________________________ James Mohr Systembetrieb Am Hofbr�uhaus 1 96450 Coburg Germany Fon +49 (0) 95 61.55 43.0 Fax +49 (0) 95 61.55 43.302 E-Mail: [EMAIL PROTECTED] --------------------------------------- "Be more concerned with your character than with your reputation. Your character is what you really are while your reputation is merely what others think you are." -- John Wooden --------------------------------------- Be sure to visit the Linux Tutorial: http://www.linux-tutorial.info _______________________________________________ ISSForum mailing list [EMAIL PROTECTED] TO UNSUBSCRIBE OR CHANGE YOUR SUBSCRIPTION, go to https://atla-mm1.iss.net/mailman/listinfo
