Hi, I am new to the forums but, not the sho
I have strong cs background but little to no knowledge of network security.
I have a spare pentium 3 box which i could add 2 nics to and use this as network monitor. I don't want to use this box as a firewall (ie smoothwall) rather, I wanted to use as a system to monitor incoming and out going traffic for viruses, spyware etc... I have people over at my place often, friends and family. Invariablly, when I let people on my network, my xp box gets infected with something or the other. Now I usually just wipe it clean and rebuild it however, I get worried sometimes because I like to do online banking and bill paying.
Thus, I want a system that can alert me once something malicious has gotten on my network. I believe this box would sit between my cable modem and wireless router monitoring for spyware, root kits etc... I am not sure but would that be considered intrusion detection????
I can usually spot spyware because i have a good idea of what is running on my system however, what really scares me is root kits.
So anybody have suggestions to where I should look?
thanks in advance.