 | This diagram illustrates standard Security Appliance deployment |
 | IDS Sensors are connected externally to shunt attackers |
 | Sniffer's are used externally to capture traffic off hours |
 | Risk Assessment software is used externally to scan the network, weekly |
 | Internally the risk assessment and sniffer are used to make sure there
have been no break-ins |
 | A syslog, SNMP trap capture monitoring Server is needed with software like
CWSI2000, HP OPENVIEW, Or Aprisma Spectrum |