Answers

Question and Answer:

  Home  Computer security

⟩ What do you see as challenges to successfully deploying/monitoring web intrusion detection?

Note: Goal of question – We are attempting to see if the applicant has a wide knowledge of web security monitoring and IDS issues such as:

· Limitations of NIDS for web monitoring (SSL, semantic issues with understanding HTTP)

· Proper logging – increasing the verboseness of logging (Mod_Security audit_log)

· Remote Centralized Logging

· Alerting Mechanisms

· Updating Signatures/Policies

 230 views

More Questions for you: