[908] in Intrusion Detection Systems
No subject found in mail header
daemon@ATHENA.MIT.EDU (Justin J. Lister)
Sun Apr 20 02:26:45 1997
From: ruf@uow.edu.au (Justin J. Lister)
To: ids@uow.edu.au (Intrusion Detection System Mailing List)
Date: Sun, 20 Apr 1997 13:27:33 +1000 (EST)
Reply-To: ids@uow.edu.au
Message-Id: <3.0.1.32.19970408160057.006a1aa4@mailhost2.planet.net>
X-Sender: peterr@mailhost2.planet.net
X-Mailer: Windows Eudora Pro Version 3.0.1 (32)
Date: Tue, 08 Apr 1997 16:00:57 -0400
To: ids@uow.edu.au
From: Israel Rosencrantz <israel@pobox.com>
Subject: network audit tools
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Is anyone doing work in the area of network audit tools? By
this I mean a device that sits on an IP network and examines
the packets as they fly by. This device would construct audit
events from the packet stream and allow further processing
on the audit trail.
[ IDS Moderator: ISS Real Secure http://www.iss.net/ and
WheelGroup Net Ranger http://www.wheelgroup.com/ ]
One way to think of this is as a sort of smart network sniffer.
Does anyone have any pointers to such a thing?
Thanks,
Israel