Re: About intergrating IDS/IPS to CloudStack

2013-03-14 Thread Nguyen Anh Tu
fe API. > > Regards > Mice > > -Original Message- > From: Nguyen Anh Tu [mailto:ng.t...@gmail.com] > Sent: Wednesday, March 06, 2013 12:36 AM > To: cloudstack-dev@incubator.apache.org > Subject: Re: About intergrating IDS/IPS to CloudStack > > Hi Mice, > &g

RE: About intergrating IDS/IPS to CloudStack

2013-03-10 Thread Mice Xia
: About intergrating IDS/IPS to CloudStack Hi Mice, As your ElasterShield solution, I see that one hypervisor node has one ESVA, which acts like Virtual Router. ESVA has one nic connects to Guest network, one nic connects to Management network. I wonder that how ESVA listens all network package

Re: About intergrating IDS/IPS to CloudStack

2013-03-06 Thread Sebastien Goasguen
On Mar 5, 2013, at 11:35 AM, Nguyen Anh Tu wrote: > Hi Mice, > > As your ElasterShield solution, I see that one hypervisor node has one > ESVA, which acts like Virtual Router. ESVA has one nic connects to Guest > network, one nic connects to Management network. I wonder that how ESVA > listens

Re: About intergrating IDS/IPS to CloudStack

2013-03-05 Thread Nguyen Anh Tu
Hi Mice, As your ElasterShield solution, I see that one hypervisor node has one ESVA, which acts like Virtual Router. ESVA has one nic connects to Guest network, one nic connects to Management network. I wonder that how ESVA listens all network package? It has to talk with hypervisor, isn't it? Or

RE: About intergrating IDS/IPS to CloudStack

2013-03-04 Thread Mice Xia
If you want to use the traditional NIDS, you'll can not know what do VMs talk each other because this is virtual network. [mice] yes, the drawback of traditional NIDS (deployed in the gateway of an enterprise/datacenter) is that it's difficult to provide fine-grained protection. Without more app

Re: About intergrating IDS/IPS to CloudStack

2013-03-04 Thread Nguyen Anh Tu
Great!!! That's exactly what I'm looking for. Many thank, Sebastien :-) 2013/3/4 Sebastien Goasguen > > On Mar 4, 2013, at 8:17 AM, Nguyen Anh Tu wrote: > > > Thanks Sebastien !!! Great idea with setting up one more SystemVM, but I > > don't know how to do this. Please show me if you don't mind

Re: About intergrating IDS/IPS to CloudStack

2013-03-04 Thread Sebastien Goasguen
On Mar 4, 2013, at 8:17 AM, Nguyen Anh Tu wrote: > Thanks Sebastien !!! Great idea with setting up one more SystemVM, but I > don't know how to do this. Please show me if you don't mind :D > Mice Xia may be able to comment better than I can: http://www.slideshare.net/mice_xia/integration-3rd-p

Re: About intergrating IDS/IPS to CloudStack

2013-03-04 Thread Nguyen Anh Tu
Thanks Sebastien !!! Great idea with setting up one more SystemVM, but I don't know how to do this. Please show me if you don't mind :D 2013/3/4 Sebastien Goasguen > > On Mar 3, 2013, at 4:05 AM, Nguyen Anh Tu wrote: > > > I'm interesting in integrate IDS/IPS to CloudStack, but didn't find any

Re: About intergrating IDS/IPS to CloudStack

2013-03-04 Thread Sebastien Goasguen
On Mar 3, 2013, at 4:05 AM, Nguyen Anh Tu wrote: > I'm interesting in integrate IDS/IPS to CloudStack, but didn't find any > effective solution. If you want to use the traditional NIDS, you'll can not > know what do VMs talk each other because this is virtual network. > Otherwise, if you use HID