Community discussions

MikroTik App
 
User avatar
BrianHiggins
Forum Veteran
Forum Veteran
Topic Author
Posts: 702
Joined: Mon Jan 16, 2006 6:07 am
Location: Norwalk, CT
Contact:

official IPS/IDS in metarouter?

Mon Feb 27, 2017 8:02 pm

Is there any community support for pushing to see an official metarouter image that would enable some IDS / IPS features? I would be interested in seeing something that can be integrated via the web proxy, and run 100% inside the router. I would like to see a supported metarouter image that contains, for example a small instance of SNORT and some sort of antivirus scanner, even if it requires a paid AV subscription key from a vendor.

I know it's possible to do this now, but having an official release with support and pre-release testing done by MT would make this something we would offer as a genuine alternative to things like SonicWALL when IDS/IPS is required.

EDIT, Just wanted to add, Native support for a IDS / IPS package would be FAR better than a metarouter image since it would work across many more devices, but I was just trying to remain realistic with my expectations....
 
savage
Forum Guru
Forum Guru
Posts: 1263
Joined: Mon Oct 18, 2004 12:07 am
Location: Cape Town, South Africa
Contact:

Re: official IPS/IDS in metarouter?

Mon Feb 27, 2017 8:44 pm

Well, IDS goes far further than just HTTP traffic, so it would need to tie in much tighter than just with web-proxy.

A bridge of some sort would more than likely be better, just my 2c :)
 
User avatar
Zetle
newbie
Posts: 30
Joined: Tue Aug 30, 2016 1:41 pm

Re: official IPS/IDS in metarouter?

Wed Mar 01, 2017 9:07 am

+1 for this. Any kind of IPS will be highly appreciated and for sure a very stable sell point!
 
Zorro
Long time Member
Long time Member
Posts: 675
Joined: Wed Apr 16, 2014 2:43 pm

Re: official IPS/IDS in metarouter?

Sat Mar 04, 2017 4:09 am

Well, IDS goes far further than just HTTP traffic, so it would need to tie in much tighter than just with web-proxy.

A bridge of some sort would more than likely be better, just my 2c :)
IPS/IDS aren't much same thing.
but may/would converge in each others. or even implemented over. eg snort -alike fwsnort with directly-imported (snort-alike)rules into netfilter.

web-proxy actually had big brother in firewalls family, eg proxy firewalls actually older things than chain firewall.
not frequently use say Zorp or Microsoft things of such kind or several other(~free or commercial(now ~ mostly EoL/discontinued), but they had neat advantages.
i knew several Zorp fans so i guess they may had future. considering how Well its SCALE, i guess CCR's would be neat platform for :=)

Who is online

Users browsing this forum: Google [Bot], mquan1984 and 124 guests