Host-based Intrusion Prevention

Boscoh

Senior member
Jan 23, 2002
501
0
0
Do any network admins/engineers here have any experience with Host-based Intrusion Prevention products on an SMB or enterprise level? I am currently evaluating the Cisco Security Agent and Sygate Secure Enterprise Managed Personal Firewall. Anyone have experience with either of these products in a production environment, or perhaps something else?
 

easternerd

Member
Sep 15, 2000
146
0
0
CheckPoint with NG FP$ is my favourite :)
its cool .. its got a slew of tools in it to prevent on detection
thats what IPS is all about well i donno if its better than tripwire though.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
IDS only, no intrusion prevention, although my favorite IDS has a "sniper" ability. ;)

I would definitely be interrested in what you decide on though.

I've played with a couple of the OpenBSD and Linux prevention products, but not enough or in a production/enterprise environment.