Title: Ottawa Area Security Klatch
Location: Microsoft Canada, 100-152 Queen St., Ottawa, ON, Canada
Link out:
Click here
Description: Talk #1: DNS Security: The Seven Deadliest Sins
Speaker: Derrick Webber
A vulnerable DNS allows attackers to compromise everything else in the
organization: your web sites, servers, SSL, VPNs, even desktops. This
short presentation covers the very worst mistakes in the design and
operation of the Domain Name Service and how to fix them.
Talk #2: Log-based Intrusion Detection (LIDS) using OSSEC+Splunk
Speaker: Dale Neufeld
OSSEC is multi-platform, open source Host-Based Intrusion Detection System (HIDS). It has a powerful correlation and analysis engine which integrates log analysis, file integrity checking, Windows registry monitoring, centralized policy enforcement, rootkit detection, real-time alerting and active response.
Splunk is a platform for IT search that enables you to build completely customizable dashboards, to have alerting and forensic capabilities for security, availability and application troubleshooting, and more.
We’ll focus on the following items:
* Benefits of centralized logging
* Overview of OSSEC architecture
* OSSEC tuning
* OSSEC custom rules for your environment
* Overview of Splunk architecture
* Splunk and OSSEC integration
Start Time: 17:30
Date: 2010-03-16