[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Full-Disclosure] Affordable Network Behavior Analysis alternatives



> I recently saw a posting on FocusIDS regarding the high cost 
> of the most commercial solutions. The one mentioned was the 
> QRadar product from Q1Labs. Don't get me wrong, we have a 
> budget, we just don't have a Fortune 500 budget. :)

That would be me.. And I don’t have a fortune 500 budget either hence 
that’s why I am working toward creating an opensource project N.B.A.D. tool. 
It's still in the planning stages but I am working on a design, roadmap, project
goals document I plan on releasing in a few weeks to several mailing 
lists in the hopes of attracting volunteers to help me code it. It would be a 
perfect compliment to snort IMHO. 

> My question is simple, are there any other commercial 
> out-of-the-box alternatives to QRadar? Something that isn't 
> going to cost me >$40,000 to deploy?

All the ones I have seen so far are megabucks (Qradar and Arbor Networks). 
I will be checking out intrusense as soon as I can get a demo copy based 
on everyone elses positive replies.

Thanks, 
Mike


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html