• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Intrusion Prevention System suggestions

rasczak

Lifer
The company I work part time for is looking into active network monitoring and want some recommendations for a small 15 man business. It will need to be scalable as this place looks like it will grow significantly. I've used the Sourcefire products and wasn't too impressed with them. Any suggestions would be greatly appreciated.
 
Last edited by a moderator:
The company I work part time for is looking into active network monitoring and want some recommendations for a small 15 man business. It will need to be scalable as this place looks like it will grow significantly. I've used the Sourcefire products and wasn't too impressed with them. Any suggestions would be greatly appreciated.
The first thing you need is a firewall appliance. You can get one to fit that size org for around $1200. That would go right behind your ISP's modem. They each have diff security packages beyond just the hardware firewall, for example web blocking, spam filtering, intrustion prevention.

If you are using a managed switch, you can do something like port security on those. SInce the business is growing, if you dont have a managed switch and security is a priority, get one.

Then you can get yourself a packet sniffer if you actually want to actively monitor like wireshark.
 
The first thing you need is a firewall appliance. You can get one to fit that size org for around $1200. That would go right behind your ISP's modem. They each have diff security packages beyond just the hardware firewall, for example web blocking, spam filtering, intrustion prevention.

If you are using a managed switch, you can do something like port security on those. SInce the business is growing, if you dont have a managed switch and security is a priority, get one.

Then you can get yourself a packet sniffer if you actually want to actively monitor like wireshark.

Sorry, I should have stated that they already own a Sonicwall NSA-xxx plus two managed switches. Just found that it has a licensed IPS module so I'm going to go with that. When the place gets bigger and the need arises then we'll look into a standalone IPS appliance.

Thanks for the info guys. 🙂
 
Back
Top