IT DRILLDOWN
 
NEWSLETTERS
 

CIO.com updates, insights and advice on technology, management and your career.

 
 
 
LEADERSHIP
 
CIO Executive Programs
The Leader in Face-to-Face Education for Senior Executives

Offering regional and national programs, CIO (and CSO) events bring together some of the most respected names and thought leaders in information technology and security. Presented by CIOs and other senior level executives, these invitation-only programs offer timely topics and strong networking. Learn More »

 
CIO Executive Council
A Peer-Advisory Service and Professional Association for CIOs

Public Teleconferences
Join CIO Executive Council members and participate in the following live one-hour teleconferences:

* Transforming IT Teams
September 16

* Global CIOs: How to Lead on the World Stage
September 18

* Social Responsibility's Strategic Benefits
October 29

More / Register »

Learn more about the CIO Executive Council »



 
 
RESOURCE CENTER
 
 
 
SUBSCRIBE TO CIO
 
Are you involved in setting the direction for your company's IT budget or strategy?

Apply today for a FREE subscription to CIO Magazine!

 
 

Intrusion Detection Systems Can Work--With Effort

 

September 15, 2002CIO — Arkansas State University is asking for trouble. The school is in the midst of a major network upgrade that will eventually bring gigabit-speed network capacity to every dorm room and office on campus?making the network a tempting playground for hackers, says Greg Williamson, associate director of information and technology services at the Jonesboro, Ark., university.

For Williamson, a network intrusion detection system (IDS) from Cisco is the key to staying on top of the network?and its potential abuses. Whenever any one of these IDS components spots a potential security threat?a virus, say, or an impending hacker attack?it notifies a central management console. If the threat is serious enough, the system automatically pages IT staff, who can deal with the attack by shutting off access, reconfiguring systems, and even identifying a hacker’s dorm room and calling campus security.

IDS?What Is It?

Like Arkansas State, many organizations are finding that firewalls, antivirus software and user authentication policies aren’t enough to keep networks safe. That explains the growing market for intrusion detection technology from established vendors such as Cisco Systems, Enterasys Networks and Internet Security Systems; new players including IntruVert, OneSecure and Recourse Technologies (Recourse was recently purchased by Symantec); and even the open-source IDS known as Snort.

In its simplest form, an intrusion detection system identifies and records potential security threats?such as someone scanning server ports or making repeated attempts to log in using random passwords. As such, it’s not a replacement for other security measures. "An IDS is like the video camera in a convenience store or a bank," says Stuart McClure, president and CTO of security consultancy Foundstone in Mission Viejo, Calif. A video camera doesn’t replace the locks on the door or the safe, but if someone breaks through those security measures, the camera provides a record that can help nab the perpetrators and buttress the security system against future attacks.

Intrusion detection systems work in a number of ways. A network-based IDS relies on network sensors that monitor packets as they go by. Typically, a network-based IDS comprises sensors at network entry points (alongside a firewall, for instance) or at the boundaries between subnets with different security levels (such as between your LAN and your data center).

A host-based IDS, by contrast, monitors activity on specific servers or mainframe hosts by keeping an eye on the integrity of critical files, or by monitoring specific operating system events (such as suspicious error messages or unusual server processes).

Loading...
 
 
CENTER OF EXCELLENCE
 
Security
» New 2008 Report: Outbound Email and Data Loss Prevention in Today's Enterprise
Email, blogging and mobile devices are important business tools, but they expose enterprises to legal, financial and regulatory risks.
» Regulations Shift Focus on Outbound Email Security
Outbound email is essential to running any business today — allowing us to share information, work with partners and even interact with customers.
» Messaging Security Goes Virtual
When it comes to technology investments, virtualization demonstrates drop-dead-obvious ROI.
» Encryption Made Easy: The Advantages of Identity Based Encryption
Growing regulations are pressuring enterprises to find effective, affordable and easy email encryption solutions.
» The Great Email Security Debate: Appliances, SaaS, or Virtual?
Today, there are many ways to approach email security — the question is: what deployment model is right for you?
Center sponsored by

 
 
ABCs
 

Just the basics, please. Sometimes we all need a refresher or we need to make sure our team and our colleagues are all on the same page.

Over 25 tutorials on everything from business intelligence to virtualization.

 
 
FEATURED SPONSORS
 
 
 
SPONSORED LINKS
 

File Integrity Monitoring: Secure Your Virtual & Physical IT Environments

Maximizing Site Visitor Trust Using Extended Validation SSL

How to Manage the Mobile Work Environment

Extending PCI Compliance to the Mobile Workforce

Building an Online Customer Experience Competency

Best Practices for Providing Secure and Cost-Effective Remote Access

How the Mac is Becoming an IT Standard in the Enterprise

Oracle Database 11g: Real Application Testing & Manageability

Reap the Benefits of Unified Communications

Efficient by design: Watch this flash demo of the Quad-Core AMD Opteron Processor

HP and Oracle deploy unbreakable computing infrastructure at Replacements, Ltd.

Optimizing Infrastructure Control

Effective Security with a Continuous Approach to ISO 27001 Compliance

How Does Your IT Help Desk Measure Up?

White Paper: Businesses Thrive by Unifying Business Communications

Getting Network Management Right: A Gartner IT briefing

Sheriff's Office Uses PocketCop to Access Police Databases from BlackBerry® Smartphones

The BlackBerry Solution Adds Significant Benefit to Toshiba

Write an RFP for Master Data Management: 10 Common Mistakes to Avoid

HP Puts Its Disaster-tolerant Capabilities to the Test

SOA Educational Library at the TIBCO SOA Resource Center

TDWI Report shows strong validation for investing in predictive analytics

Cost-Effective Data Center 1U Server Solutions

Secure your virtual and physical environments with the same software

GET YOUR VoIP ONTM! Win 2 Years of Hosted VoIP from Cypress. $100,000 retail value. Enter today!

Protecting Data in a Highly Networked World

Standalone Server vs. Open Source Toolkits

The Universal Wireless Client: Simplify mobility and reduce the cost of supporting mobile workers

Strategies for Asia-Pacific Expansion

They Can't Steal What You Don't Have: Smart Security Choices for Mobile Workers

Consolidation: Just the Starting Point for Virtualization

Storage Efficiency: The Key to Green Storage Operation

Getting Off on the Right Foot: Avoiding Common Master Data Management False Starts

The Challenge of Network Access Control -- Is a Managed Service the Answer?

Renowned Engineering Institution Chooses AMD Processor-Based Servers

New research validates telepresence solutions.

Configuration Assessment: Choosing the Right Solution

How to Calculate the ROI of Remote Support

31 Best Practices for the Service Desk

Unified Communications Software: The Death of VoIP?

Unify and Conquer: The Benefits of Unified Communications.

Heinz Uses a Wireless, Automated, Auditing process on BlackBerry® devices

Webcast: Solutions to the Toughest IT Challenges in Remote Offices

Network Immunity Manager Video

Dell Latitude: Battery life up to 19 hours. Learn more

Video: 21st Century Networking for a 12th Century Castle

Speed, agility, flexibility - The HP BladeSystem c-Class

Learn about the software-based VoIP solution from Microsoft

Microsoft System Center - Designed For Big

Accelerating ITIL at the Service Desk