News and Hit Counts
Sunday, February 3, 2008
Weird. Despite the fact that I haven’t blogged in almost 6 months, my RSS feed is now resulting in more hits at jham corp. than any other source. You can’t all be that starved for my written wit and
No, seriously. “Architecture?”
Wednesday, August 15, 2007
”OK, I hear you. It’s important. But ‘Architects’ turn out to be expensive. What’s the point? What’s the value?”
I feel strongly that in order to be a competent practitioner of network security,
Why Security Architectures and Models?
Friday, August 10, 2007
”I’m a Security Program Manager studying for my CISSP. What’s with all the material on Security Architectures and Models? How will knowing Bell-LaPadula help me do my job better?”
The various
The WAP at your favorite café is not OK.
Wednesday, July 18, 2007
”What was that you were ranting about with the Wireless Access Points in cafés? I mean, sure, they’re a problem, but how?”
As far as I'm concerned, the worst issue with 802.11x wireless networks, is
20% False Positive Rate? Yikes!
Thursday, July 12, 2007
”Did I hear you right? You often deal with a 20% false positive rate in IDS? How many hits is that in a day? Do you monitor logs like that for your clients all the time? How do you escalate?”
Sniffing, Slurping, Snarfing, Snorting
Wednesday, July 11, 2007
”What tools are you using to packet sniff?”
I use all things based on libpcap (http://www.tcpdump.org).
And that's a huge, massively compatible arsenal. From tcpdump to ethereal (ok, "wireshark"),