SI
SI
discoversearch

We've detected that you're using an ad content blocking browser plug-in or feature. Ads provide a critical source of revenue to the continued operation of Silicon Investor.  We ask that you disable ad blocking while on Silicon Investor in the best interests of our community.  If you are not using an ad blocker but are still receiving this message, make sure your browser's tracking protection is set to the 'standard' level.
Technology Stocks : Check Point Software (CHKP) -- Ignore unavailable to you. Want to Upgrade?


To: Analog Kid who wrote (2724)6/3/1998 7:53:00 AM
From: jttmab  Read Replies (1) | Respond to of 7150
 
Analog Kid,

My familiarity with Axent's intrusion detection system is a little dated, they were discussed more some time ago before Ballista and RealSecure got the bulk of the attention and deservedly. At the time though they had a decent product in terms of effectiveness, but I heard some rumors that each installation required a lot of tech support on their part. Tech support was good (technically), very responsive and free.

I wouldn't be surprised if your 40% number is accurate but you should discount it as being important. The market say 6 months to a year ago was so small that 40% market share could be achieved with a single sale! (A little hyperbole).

Something to consider when combining intrusion detection and VPNs...In general the more I deploy VPNs, particularly within a local area network the more useless intrusion detection is, i.e., since most intrusion detection systems look at IP datagrams moving on the network, if all the IP datagrams become encrypted the intrusion detection systems become ineffective. This leads one pretty quickly to the conclusion that I need to have a distributed intrusion detection system on each host, client and server, within the network (nice volume). I think it's true, that the only company with this capability is Fortress Technology, a small privately owned pure play in security. They have been written up in some of the trade journals as a distributed firewall rather than a distributed intrusion detection system and consequently the evaluations haven't been stellar, but I think that this is more of a problem with the evaluators not knowing how to handle this different "animal".

Best Regards,
Jim