AccessMyLibrary provides FREE access to millions of articles from top publications available through your library.
Create a link to this page
Copy and paste this link tag into your Web page or blog:
Sourcefire's open source IDS engine, Snort, has long been the gold standard of signature-based intrusion detection systems. Snort's commercial sibling, Sourcefire 3D, takes Snort a step further by adding passive vulnerability assessment and service-anomaly detection to the mix. 3D stands for Discover, Determine, and Defend, referring to Sourcefire 3D's capability to use knowledge of the services and vulnerabilities that are present in the network in order to defend against attacks intelligently.
The Sourcefire 3D system comprises three layers: RNA (Real-Time Network Awareness) sensors, which perform asset discovery, vulnerability assessment, and anomaly detection; Intrusion Sensors, which analyze network traffic and alert on or block threats; and the Defense Center, which aggregates information from all the sensors and allows you to manage the system centrally. In addition to a variety …