Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Computing > Computer Security > REVIEW: "Intrusion Detection with Snort", Rafeeq Ur Rehman

Reply
Thread Tools

REVIEW: "Intrusion Detection with Snort", Rafeeq Ur Rehman

 
 
Rob Slade, doting grandpa of Ryan and Trevor
Guest
Posts: n/a
 
      10-13-2003
BKIDWSAI.RVW 20030902

"Intrusion Detection with Snort", Rafeeq Ur Rehman, 2003,
0-13-140733-3, U$39.99/C$62.99
%A Rafeeq Ur Rehman
%C One Lake St., Upper Saddle River, NJ 07458
%D 2003
%G 0-13-140733-3
%I Prentice Hall
%O U$39.99/C$62.99 +1-201-236-7139 fax: +1-201-236-7131
%O http://www.amazon.com/exec/obidos/AS...bsladesinterne
http://www.amazon.co.uk/exec/obidos/...bsladesinte-21
%O http://www.amazon.ca/exec/obidos/ASI...bsladesin03-20
%P 263 p.
%T "Intrusion Detection with Snort"

Chapter one is a very simple introduction to intrusion detection and
Snort. Beginning with a brief look at topology, chapter two runs
through an installation of Snort, but does not provide much in the way
of explanation or recommendation at the various points. The coverage
of Snort rule creation and syntax, in chapter three, is clear and
reasonable, but could use more examples of malicious packets and how
they might be identified. Chapter four does explain some exploit
rules, in discussing preprocessors, but briefly, and then goes on to
output options. Chapters five, six, and seven describe MySQL, ACID
(Analysis Console for Intrusion Databases), and other tools for using
Snort in conjunction with collected information.

This is a decent printed documentation for the system, but not much
more.

copyright Robert M. Slade, 2003 BKIDWSAI.RVW 20030902

--
======================

"If you do buy a computer, don't turn it on." - Richards' 2nd Law
============= for back issues:
[Base URL] site http://victoria.tc.ca/techrev/
or mirror http://sun.soci.niu.edu/~rslade/
CISSP refs: [Base URL]mnbksccd.htm
Security Dict.: [Base URL]secgloss.htm
Security Educ.: [Base URL]comseced.htm
Book reviews: [Base URL]mnbk.htm
[Base URL]review.htm
Partial/recent: http://groups.yahoo.com/group/techbooks/
Security Educ.: http://groups.yahoo.com/group/comseced/
Review mailing list: send mail to techbooks-

 
Reply With Quote
 
 
 
 
Tommy
Guest
Posts: n/a
 
      10-13-2003
Rob Slade, doting grandpa of Ryan and Trevor wrote:

> BKIDWSAI.RVW 20030902
>
> "Intrusion Detection with Snort", Rafeeq Ur Rehman, 2003,
> 0-13-140733-3, U$39.99/C$62.99
> %A Rafeeq Ur Rehman
> %C One Lake St., Upper Saddle River, NJ 07458
> %D 2003
> %G 0-13-140733-3
> %I Prentice Hall
> %O U$39.99/C$62.99 +1-201-236-7139 fax: +1-201-236-7131
> %O http://www.amazon.com/exec/obidos/AS...bsladesinterne
> http://www.amazon.co.uk/exec/obidos/...bsladesinte-21
> %O http://www.amazon.ca/exec/obidos/ASI...bsladesin03-20
> %P 263 p.
> %T "Intrusion Detection with Snort"
>
> Chapter one is a very simple introduction to intrusion detection and
> Snort. Beginning with a brief look at topology, chapter two runs
> through an installation of Snort, but does not provide much in the way
> of explanation or recommendation at the various points. The coverage
> of Snort rule creation and syntax, in chapter three, is clear and
> reasonable, but could use more examples of malicious packets and how
> they might be identified. Chapter four does explain some exploit
> rules, in discussing preprocessors, but briefly, and then goes on to
> output options. Chapters five, six, and seven describe MySQL, ACID
> (Analysis Console for Intrusion Databases), and other tools for using
> Snort in conjunction with collected information.
>
> This is a decent printed documentation for the system, but not much
> more.
>
> copyright Robert M. Slade, 2003 BKIDWSAI.RVW 20030902
>


You don't need all that to understand Snort/IDS. Install it and READ THE MAN
FILES!!
 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Edge Detection circuit. Raghavendra VHDL 17 06-30-2009 03:54 AM
BT Voyager 2100 Detection Problems itsmattyboy Wireless Networking 0 06-08-2005 07:23 PM
edge detection using subprograms M.Randelzhofer VHDL 6 02-09-2005 01:23 AM
hazard detection unit Klejmann VHDL 0 06-18-2004 06:38 AM
comment faire une détection de niveau haut ou "1" en vhdl ? Arnaud VHDL 2 02-11-2004 06:34 PM



Advertisments
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57