|
For many IT departments in public and private enterprises, 2009 and 2010 will be years characterized by tight budgets and resource limitations. Can Open Source solutions provide an opportunity to overcome these confines?
We will answer these questions in detail through concrete examples and a demonstration of Open Source security and network information management. We will describe and demonstrate the implementation of an enterprise ready system comprised of more than 15 well-known Open Source tools, with the goal of demonstrating that Open Source technology that it can provide a reliable and comprehensive alternative to commercial solutions, at a fraction of the cost, without sacrificing functionality or ease of use.
Specifically, the presentation will include:
1.- Brief introduction: Market Analysis & Business Needs
2.- Review of well-known and trusted Open Source security and network management solutions.
3.- Review of an Open Source SIM as a means of facilitating integration of many Open Source security tools:
* System architecture
* Components and their functionalities
* Data collection, correlation and policy definition
4.- Use cases: We will test this Open Source Security architecture by launching some common attacks in a virtual scenario using VMware. This way we will see real time detection, based on collection and correlation from proprietary systems distributed throughout the enterprise to understand as much as possible about the attack method used and its behavior.
* Various attacks & exploits against Unix and Microsoft environments
5.- Open Source SIM deployment in real networks & Conclusions
Q&A
|