Thread: [Netadm-devel] Question about IDS engine. [please ignore linuxpark@gmail.com it's not valid address
Status: Beta
Brought to you by:
linuxpark
[Netadm-devel] Question about IDS engine. [please ignore linuxpark@gmail.com it's
not valid address]
From: jeho-park <lin...@gm...> - 2006-02-21 13:08:29
|
hi all as you know, i suggested the goal of our project in this year. ( http://netadm.sf.net/gwc_todo.ppt ) to achieve the project goal which was described in that file, we first have to implement a Intrusion detection System engine. or port some another engine which is already implemented by other project to our source directory. as a result, through some interface functions of this engine, we can start to make a IPS(Intrusion Prevention System). as a summary, i want to know whether the current frame of snort is contructed with the form from which we can port its engine to our program. if it is impossible to port snort engine to our source, i think we have to decide whether to search another IDS engine or to make it by ourselves. |
From: EP8KHA E. <ep...@ho...> - 2006-02-22 00:40:15
|
Hi, Not to downplay our abilities but I think we should make an effort to find a good IDS engine before thinking about making our own. It seems easier that way and would eliminate potential problems. George >From: jeho-park <lin...@gm...> >To: net...@li... >Subject: [Netadm-devel] Question about IDS engine. [please ignore >lin...@gm... it's not valid address] >Date: Tue, 21 Feb 2006 14:42:04 +0900 > >hi all > >as you know, i suggested the goal of our project in this year. ( >http://netadm.sf.net/gwc_todo.ppt ) >to achieve the project goal which was described in that file, we first >have to implement a Intrusion detection System engine. or port some >another engine which is already implemented by other project to our >source directory. >as a result, through some interface functions of this engine, we can >start to make a IPS(Intrusion Prevention System). > >as a summary, i want to know whether the current frame of snort is >contructed with the form from which we can port its engine to our >program. if it is impossible to port snort engine to our source, i think >we have to decide whether to search another IDS engine or to make it by >ourselves. > > > > > >------------------------------------------------------- >This SF.net email is sponsored by: Splunk Inc. Do you grep through log >files >for problems? Stop! Download the new AJAX search engine that makes >searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! >http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642 >_______________________________________________ >Netadm-devel mailing list >Net...@li... >https://lists.sourceforge.net/lists/listinfo/netadm-devel _________________________________________________________________ Express yourself instantly with MSN Messenger! Download today - it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/ |
From: jeho-park <lin...@gm...> - 2006-02-22 14:08:24
|
hi george i read your mail which subject is "snort-status" and this mail below . i agree with your idea, so i will wait your advice about snort. above all, i am afraid that kwan-kyung gave up our project, because he did not reply to my email so i will delay adding new functionalities in "flow control" of gwc but will translate develop document into korean by myself as soon as possible. good luck~ thanks EP8KHA EP8KHA wrote: > Hi, > Not to downplay our abilities but I think we should make an effort to > find a good IDS engine before thinking about making our own. It seems > easier that way and would eliminate potential problems. > > George > > >> From: jeho-park <lin...@gm...> >> To: net...@li... >> Subject: [Netadm-devel] Question about IDS engine. [please ignore >> lin...@gm... it's not valid address] >> Date: Tue, 21 Feb 2006 14:42:04 +0900 >> >> hi all >> >> as you know, i suggested the goal of our project in this year. ( >> http://netadm.sf.net/gwc_todo.ppt ) >> to achieve the project goal which was described in that file, we first >> have to implement a Intrusion detection System engine. or port some >> another engine which is already implemented by other project to our >> source directory. >> as a result, through some interface functions of this engine, we can >> start to make a IPS(Intrusion Prevention System). >> >> as a summary, i want to know whether the current frame of snort is >> contructed with the form from which we can port its engine to our >> program. if it is impossible to port snort engine to our source, i think >> we have to decide whether to search another IDS engine or to make it by >> ourselves. >> >> >> >> >> >> ------------------------------------------------------- >> This SF.net email is sponsored by: Splunk Inc. Do you grep through >> log files >> for problems? Stop! Download the new AJAX search engine that makes >> searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! >> http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642 >> _______________________________________________ >> Netadm-devel mailing list >> Net...@li... >> https://lists.sourceforge.net/lists/listinfo/netadm-devel > > > _________________________________________________________________ > Express yourself instantly with MSN Messenger! Download today - it's > FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/ > > > > ------------------------------------------------------- > This SF.net email is sponsored by: Splunk Inc. Do you grep through log > files > for problems? Stop! Download the new AJAX search engine that makes > searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! > http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642 > _______________________________________________ > Netadm-devel mailing list > Net...@li... > https://lists.sourceforge.net/lists/listinfo/netadm-devel > |