Network IDS

The following open source Network Intrusion Detection Systems are often used to monitor the Science DMZ.

  • Zeek (formerly Bro)
    • YouTube presentation from BroCon 2014 on using Bro within a Science DMZ environment.  Note that despite this presentation being from 2014, the concepts all still apply. 
  • Snort

These tools can also be used to trigger Black Hole Routing.