All the latest UK technology news, reviews and analysis

Intrusion detection 'a waste of space'

by Robert Jaques

13 Jun 2003

Be the first to comment

  • Tweet this

Intrusion detection systems (IDS) are a waste of money and "will be obsolete by 2005", industry analysts have predicted.

According to Information Security Hype Cycle, the latest research from Gartner, IDS technology does not add the additional layer of security promised by vendors. In many cases it has even proven to be a costly and ineffective investment, the firm said.

Gartner recommends that enterprises redirect the money they would have spent on IDS towards defence applications such as those offered by firewall vendors, which offer both network-level and application-level firewall capabilities in an integrated product.

"Intrusion detection systems are a market failure and vendors are now hyping intrusion prevention systems, which have also stalled," said Richard Stiennon, research vice president for Gartner.

"Functionality is moving into firewalls, which will perform deep packet inspection for content and malicious traffic blocking, as well as antivirus activities."

According to the Gartner report, the main IDS-associated problems are false positives and negatives, an increased burden on the IT organisation by requiring full-time monitoring, and an inability to monitor traffic at transmission rates greater than 600Mbps.

"Firewalls are the most effective defence against cyber-intruders on the network, and they are becoming increasingly better at blocking network-based attacks," said Stiennon.

"To be considered as a challenger, visionary or leader, a vendor must have both network-level and application-level firewall capabilities in an integrated product. Vendors that have only one or the other will be niche players."

Gartner's view opposes that of Infonetics Research, which last week predicted a boom in IDS sales over the next three years.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

31%

1%

12%

56%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Project Manager - Credit Risk - Finance IT - Investment Bank

Project Manager - Credit Risk - Finance IT - Investment...

Infrastructure Configuration Manager/Analyst/Data Modeler/IB

Infrastructure Configuration Manager/Analyst/Data Modeler...

Lead Perl Developer, Apache, SQL, Unix/Linux, INVESMENT BANK

Lead Perl Developer, Apache, SQL, Unix/Linux, Shell Scripting...

Perl Developer, Web and JEE App Servers, INVESTMENT BANK

**Perl /Java Developer, Web/ JEE application servers...

To send to more than one email address, simply separate each address with a comma.