Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 32 guests online
 
Advertisement

You are here: Home
EH-Net
May 25, 2013, 07:44:24 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2
1  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: How valuable is IDS? on: July 25, 2012, 10:35:31 AM
I don't think that IDS is worthless.  I just suspect that it's not the best use of scarce resources.
you can always go the no/low cost securityonion route for your IDS monitoring.
2  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: How valuable is IDS? on: July 20, 2012, 06:38:14 AM
I'm focused on the existing rule sets, either those available from the IDS vendor or a third-party project such as Emerging Threats.

When just talking about standard default rules I think is where having mutiple IDS devices working together becomes valuable. High level example being maybe you run Cisco IDS/IPS along with something like SecurityOnion on the same network segment to get potentially differing views/alerts of traffic going through to compare against each other.
3  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: How valuable is IDS? on: July 19, 2012, 07:07:12 AM
there's too much grey area in what you're asking. The person tuning the IDS/IPS is the one that will catch potentially malicious traffic using a variety of resources including the IDS. You can't rely on any one tool to do the work. Can you tune the device and write custom signatures to help aid in the work and narrow it down to what you want? of course but ultimately the staff is the focus not a specific device.
4  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: How valuable is IDS? on: July 18, 2012, 02:21:16 PM
It is only that: a tool. By itself without staff who can interpret, other security controls, etc.... it probably would be a paperweight.

I believe a properly configured and maintained IDS used along with other aids adds value to a security program. Ultimately any additional alerts, data, insight, etc... I can get I will be more than happy to take.
5  Ethical Hacking Discussions and Related Certifications / Hardware / Re: New MacBook Pro on: July 17, 2012, 09:30:54 AM
while certainly pricey. those new retina displays are something to behold. i currently am using an early 2011 i7 macbook pro and have upped the ram to 16 gigs and couldn't be happier.
6  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Anyone doing PWB / preparing for the OSCP exam? on: July 12, 2012, 09:20:49 AM
I never see any of you guys on IRC. Different nicks perhaps?

yes my nick on there is nconco
7  Ethical Hacking Discussions and Related Certifications / Programming / Re: Python tutorial videos on: July 11, 2012, 06:37:46 AM
nice find! thanks for the share.
8  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-July 2012 Free Giveaway Sponsor - Hacking Dojo on: July 11, 2012, 06:32:54 AM
this is a fantastic prize. i'm going to be very very jealous to whomever gets this.
9  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Anyone doing PWB / preparing for the OSCP exam? on: July 11, 2012, 06:31:42 AM
i have some free time in life again and i bought another block of lab time. about halfway through my 30 days now and i definitely agree that taking some time between my first go through of the labs and this time has helped me focus and be a lot more successful.

if you want to chat more let me know i'm always lurking in the irc channel and on here.
10  Ethical Hacking Discussions and Related Certifications / Other / Re: Hakin9 divide subscription on: July 11, 2012, 06:28:38 AM
since this is the ethical hacker network and all.... this seems like the wrong place to be asking about sharing a subscription/login that is very clearly marked as being for only one person on the hackin9 site.

 Cheesy
11  Ethical Hacking Discussions and Related Certifications / Networking / Re: certificationkits on: May 25, 2012, 09:31:17 AM
Kind of hi-jacking the thread, but any recommendations on what and where to get Juniper firewalls to learn on?

SRX100 is the cheapest you can pick up new they sit around 600 or 700 bucks.
12  Ethical Hacking Discussions and Related Certifications / Networking / Re: certificationkits on: May 24, 2012, 02:47:42 PM
Thanks nicklauscombs.  Yeah I am looking at ebay now, and they have kits for half the price including a warranty.  I might have to try that.  Books are already expensive. Thanks everyone for the info. 

i meant more for you to buy the "kit" piece by piece and stay away from the bundled packages as they are always overpriced and usually has extremely ancient hardware. you'll also learn way more by having to research images, hardware, memory, etc....
13  Ethical Hacking Discussions and Related Certifications / Networking / Re: certificationkits on: May 24, 2012, 11:41:56 AM
GNS3 is an excellent option if it will suit your needs. if you really want a full hands on lab going through one of these companies is definitely the "easy way" but if you go the ebay route you will save yourself a TON of money. and i mean a TON of money.
14  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: here we go.... on: August 20, 2011, 06:31:55 PM
status update: one month down

i figure i would jump back in and give an update on the progress and my thoughts so far. one month down and i've been pretty good with sticking to my goal of at least an hour in the lab per day and studying the materials for a good amount of time each day i'm at work.

i have a month left in the labs and as others have said previously i would highly recommend anyone jumping in to get at minimum 60 days unless you have a good amount of pen testing experience and/or lots of free time to dedicate to the labs. more than likely i will be extending my lab time by another 30 days just to ensure i have plenty of time to dig in as deep as i possibly can. having a decent level of networking/sys admin skills and minimal security experience prior to signing up i must say i have surprised myself at how far i have come in the training and how much progress i have made in the labs. i can directly attribute my success so far to the quality of the training materials and how the training is structured. i am looking forward to the next 30 days plus and finally coming out this certification attempt alive  Cheesy
15  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: New to forums, Hi, and Thanks! on: August 08, 2011, 01:04:21 AM
Hello! Welcome!
Pages: [1] 2
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.082 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.