Great Circle Associates Firewalls
(June 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Security Check Program(s)
From: "Michael H. Warfield" <mhw @ wittsend . com>
Date: Sun, 23 Jun 1996 19:55:08 -0400 (EDT)
To: rebowes @ iwdc1 . office . rest . tasc . com (Bob Bowes)
Cc: Darwin_Martinez @ ins . com, firewalls @ greatcircle . com, wizards @ ins . com
In-reply-to: <9606211321 . AA08985 @ iwdc1 . office . rest . tasc . com> from "Bob Bowes" at Jun 21, 96 09:20:57 am

Bob Bowes enscribed thusly:
> > All:

> > I'm not sure my last message went out (I never received it), but I'm looking
> > for a security checking program similar to SATAN. I saw one mentioned here a
> > few weeks back that was similar to SATAN, but would actually recommend ways
> > to fix the security hole(s). If anyone knows what the name of this app is,
> > or any other  program that's worth its beans, please respond via private
> > email if so inclined.

> SATAN does recommend how to fix the security holes.  What are you trying to 
> check for?  COPS will check for configuration problems (it needs to be 
> updated), TRIPWIRE will check for modified files, ISS will also check your 
> network for vulnerabilities (more than SATAN).  This is assuming that you want 
> to check a *nix server.

	No.  That is assuming that you want to check FROM a *NIX server.  ISS
is particularly noted for checking a variety of holes and vulnerabilities in
Windows, Windows 95, and Windows NT when running TCP/IP.  You just have to run
it from a *NIX server.  And, yes, ISS also makes recommendations as to fixes.

	http://www.iss.net

> Good luck,

	Ditto!

> Bob

	Mike
-- 
 Michael H. Warfield    |  (770) 985-6132   |  mhw @
 WittsEnd .
 com
  (The Mad Wizard)      |  (770) 925-8248   |  http://www.wittsend.com/mhw/
  NIC whois:  MHW9      |  An optimist believes we live in the best of all
 PGP Key: 0xDF1DD471    |  possible worlds.  A pessimist is sure of it!


References:
Indexed By Date Previous: TIS Gauntlet and CERN
From: Richard Price <rwpa @ telecom . co . nz>
Next: Re: Pilot Network Services
From: Alan Hannan <alan @ gi . net>
Indexed By Thread Previous: Re: Security Check Program(s)
From: Bob Bowes <rebowes @ iwdc1 . office . rest . tasc . com>
Next: RE: Security Check Program(s)
From: Alex Filacchione <alexf @ iss . net>

Google
 
Search Internet Search www.greatcircle.com