:NewsForge: Dshield--A Community Approach to Intrusion Detection
NewsForge: Dshield--A Community Approach to Intrusion Detection Jun 23, 2005, 13 :00 UTC (0 Talkback[s]) (3854 reads) (Other stories by Paul Virijevich)
"Analyzing firewall logs is key to understanding the threats your servers face. Knowing what the bad guys are looking for is the first step in assessing how vulnerable your servers are. Both open source and commercial firewalls make log information available to firewall administrator. But taking risk assessment a step further, what if there were a way to apply the principles that make open source software successful to firewall log analysis? A way to help yourself and others at the same time? The DShield project seeks to do just that.
"DShield bills itself as a distributed intrusion detection system. It works by collecting statistics from firewalls all over the world..."