26 used & new from $0.11

Have one to sell? Sell yours here
 
 
Intrusion Detection: Network Security Beyond the Firewall
 
 
Tell the Publisher!
I’d like to read this book on Kindle

Don’t have a Kindle? Get your Kindle here.
 
  

Intrusion Detection: Network Security Beyond the Firewall (Paperback)

~ (Author) "Intrusion detection is a hot topic..." (more)
Key Phrases: address impersonation, classic security model, login thresholds, Trojan Horse, Internet Scanner, Traditional Network Security Approaches (more...)
2.8 out of 5 stars  See all reviews (9 customer reviews)


Available from these sellers.


8 new from $6.00 18 used from $0.11

Editorial Reviews

Amazon.com Review

This superior text on computer security is extremely rich in information, based on experience, and a pleasure to read. In addition, the author is donating part of his royalties from this book to various charities--initially, a foundation that fights child abuse.

Escamilla begins by exploring intrusion prevention systems--firewalls, user authentication routines, and access controls--and telling how to properly set up such systems. He then describes mechanisms that identify and minimize damage caused by electronic break-ins once they occur. The author covers both system-level and network-level intrusion-detection systems, describing tools that attempt to catch not only outsiders who have broken in, but also legitimate system users who are up to no good.

Escamilla details several anti-intruder tools, including packet sniffers and vulnerability scanners. He describes a lot of Unix hacks and tells what you can do to prevent them from taking place on your systems. Other chapters focus on intrusions in Windows NT environments and what to do when your system is under attack. Escamilla closes with references to other sources. --David Wall



Product Description

A complete nuts-and-bolts guide to improving network security using today's best intrusion detection products

Firewalls cannot catch all of the hacks coming into your network. To properly safeguard your valuable information resources against attack, you need a full-time watchdog, ever on the alert, to sniff out suspicious behavior on your network. This book gives you the additional ammo you need. Terry Escamilla shows you how to combine and properly deploy today's best intrusion detection products in order to arm your network with a virtually impenetrable line of defense. * Industry news
* Product information

Product Details

  • Paperback: 368 pages
  • Publisher: Wiley; 1 edition (September 17, 1998)
  • Language: English
  • ISBN-10: 0471290009
  • ISBN-13: 978-0471290001
  • Product Dimensions: 9.3 x 7.6 x 0.9 inches
  • Shipping Weight: 1.3 pounds
  • Average Customer Review: 2.8 out of 5 stars  See all reviews (9 customer reviews)
  • Amazon.com Sales Rank: #1,580,198 in Books (See Bestsellers in Books)

    Popular in this category: (What's this?)

    #58 in  Books > Computers & Internet > Security & Encryption > Firewalls

More About the Author

Terry Escamilla
Discover books, learn about writers, read author blogs, and more.

Visit Amazon's Terry Escamilla Page

Inside This Book (learn more)




Tag this product

 (What's this?)
Think of a tag as a keyword or label you consider is strongly related to this product.
Tags will help all customers organize and find favorite items.
Your tags: Add your first tag
 

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

 

Customer Reviews

9 Reviews
5 star:
 (1)
4 star:
 (4)
3 star:    (0)
2 star:    (0)
1 star:
 (4)
 
 
 
 
 
Average Customer Review
2.8 out of 5 stars (9 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
26 of 27 people found the following review helpful:
1.0 out of 5 stars Jarringly unfocussed and inaccurate..., August 13, 1999
By A Customer
I wanted to like this book, seeing as how I've made intrusion detection an important part of my career (the book spends a few pages discussing a paper I wrote), and there are no good offline resources on the subject. Unfortunately, I found little to appreciate in this book, which could have benefited greatly from better technical editing, a sharper concept of what its audience is, and (unfortunately) a better grounding in the subject matter.

The most important problem with this book will be obvious to most readers. Escamilla doesn't address the subject of intrusion detection until midway through the book, opting instead to fill the first half of the book with background information about computer security. This information is presented poorly (and with glaring inaccuracies). Almost all of it is covered better in other books, which readers unfamiliar with network security will need to buy anyways to make the intrusion detection concepts discussed in the latter half of the book accessible.

Unfortunately, the relevant half of the book isn't much better. A confused mish-mash of technologies are presented under the banner of I-D (I know of very few people in the security industry who consider security scanners to be I-D systems), and the most widely used forms of I-D are given scant coverage.

Worse still, the author profiles real commercial I-D systems (towards the end of the book). Apart from the fact that this information was unsalvageably outdated before the book made it to the press, it's also biased. Descriptions of one system span 3 pages, while another merits a single paragraph. Many important systems (which were widely known at the time of this book's release) are not covered at all. And, predictably, most of the details about the commercial systems covered read like marketing material, with almost no comparisons to the other systems covered.

Although this book is a mess, it's not an unrecoverable one. The authors descriptions of Do-It-Yourself intrusion detection on Unix systems is competant, if not revolutionary, and is almost reminiscent of Cheswick and Bellovin's work in _Firewalls_and_Internet_Security_. A better informed, more coherent second revision of this book would be worth looking at.

Unfortunately, there's very little to recommend this book. A critical and informed reader might get some value out of it, but nothing that couldn't be obtained more easily from the Internet. At its worst, however, this book can be misleading, and is thus an inappropriate introduction to its subject. Overall, a deeply flawed book. Steer clear.

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
15 of 16 people found the following review helpful:
1.0 out of 5 stars Buy the Northcutt book instead, January 29, 2000
By J. G. Heiser (Sunninghill, Berks) - See all my reviews
(REAL NAME)   
This is just not a useful book. Half of the book is not about intrusion detection at all--it consists of an uninspiring general introduction to computer security.

The author apparently has no actual experience in the subject. It is filled with innaccuracies. Confusing 'hash value' with 'digital signature' is a common rookie mistake, but it is typical of the inexcusable lack of precision in this text.

Besides being misleading, off-subject, and out-of-date, it is deadly boring. If you want a hands-on book, get the Northcutt text. If you want an academic and useful theoretical approach, get Amoroso's book. If you want an introductory text on information security, why would you buy a book on IDS?

It is apparent that Wiley badly wanted to publish a book on intrusion detection, and the author was all too willing to squeeze his existing square peg of a security text into an ill-fitting IDS round hole.

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
10 of 10 people found the following review helpful:
1.0 out of 5 stars Rambling and fragmented - of little use to novice or expert, April 16, 1999
By A Customer
Computer security is a subject that one either loves or loathes. To the lover, it is a stimulating, intellectual challenge. To the loather, it is based on boring, complicated maths with the sole aim of preventing users doing their job.

In such a world, any author of a book needs to decide whether to write their work at the techies, thus jumping straight in at the deep end, or the novice, offering a gentle primer that attracts the reader into the subject. The very best computer security books (Schneier; Stoll; Garfinkel and Spafford) have clearly attacked one path. The worst have headed off somewhere in between.

Escamilla has chosen the latter - with the usual, dire consequences. Aimed at `any computer literate person' the book is notionally divided into two parts, one to introduce basic concepts of computer security, and another to describe intrusion detection systems. However, neither part meets it aim. The first occupies more than 150 rambling and often inaccurate pages. Moreover, it strays into territory well beyond `any' person. For instance, ten pages are devoted to the Kerberos authentication protocol. Indeed, so long is the `introduction' that the author, almost apologetically, has to keep reminding the user that the book is about intrusion detection.

The second part fares little better. It forages around scanners, network sniffers, covert channels, Unix and NT adminstration, again under the apologetic guise of intrusion detection. Some intrusion detection systems are described - RealSecure, NetRanger and so on - but in a brief and fragmented manner, which offers little in the way of practical, consumer guidance. Possibly the worst aspect of the treatment is that no coverage is given to what a typical audit log looks like - which would at least help justify why intrusion detection systems are needed.

The most useful piece of advice offered in the book is not to consider buying an intrusion detection system if you haven't invested in more basic tools like a firewall. The most useful piece of advice that can be offered about the book is not to consider buying it.

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)


Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews

1.0 out of 5 stars Don't be fooled by the name of the book.
Look for somewhere else if you are serious about network security. The content of the whole book is just too superficial !
Published on October 20, 1999

4.0 out of 5 stars Valuable help to the data security professional.
This is a book with a lot of content, capable to give valuable help to the data security professional. Read more
Published on April 8, 1999 by Giulio Carducci (g.carducci@se...

4.0 out of 5 stars Excellent introduction to intrusion detection technology
Review by M. E. Kabay, PhD, CISSP Director of Education ICSA,Inc.

Terry Escamilla, PhD, has many years of experience designingand implementing information security systems... Read more

Published on December 13, 1998

5.0 out of 5 stars Perfect guide to network security
Escamilla uses practical perspectives to expertly describe methods to improve network security.
Published on December 2, 1998

4.0 out of 5 stars Superb coverage for ID strategy and deployment
If you're responsible for protecting your company's information assets, this book is for you. As a security professional at a mid-sized firm, I found Escamilla's frank... Read more
Published on November 24, 1998

4.0 out of 5 stars Excellent Introduction to Intrusion Detection
Intrusion Detection - Network Security Beyond the Firewall is a very well researched and well thought out discussion of where commercial security tools fit into an organizations... Read more
Published on November 11, 1998 by Steven R. Snapp

Only search this product's reviews



Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 

Search Customer Discussions
Search all Amazon discussions
   



So You'd Like to...


Create a guide

Product Information from the Amapedia Community

Beta (What's this?)


Look for Similar Items by Category


Look for Similar Items by Subject

 

Feedback

If you need help or have a question for Customer Service, contact us.
 Would you like to update product info or give feedback on images?
Is there any other feedback you would like to provide?

Your comments can help make our site better for everyone.



Your Recent History

 (What's this?)

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.