Announcement: IPS code
So after 20 years, IBM is killing off my BlackICE code created in April 1998. So it's time that I rewrite it.BlackICE was the first "inline" intrusion-detection system, aka. an "intrusion prevention system" or IPS. ISS purchased my company in 2001 and replaced their RealSecure engine with it, and later renamed it Proventia. Then IBM purchased ISS in 2006. Now, they are formally canceling the project and moving customers onto Cisco's products, which are based on Snort.
So now is a good time to write a replacement. The reason is that BlackICE worked fundamentally differently than Snort, using protocol analysis rather than pattern-matching. In this way, it worked more like Bro than Snort. The biggest benefit of protocol-analysis is speed, making it many times faster than Snort. The second benefit is better detection ability, as I describe in this post on Heartbleed.
So my plan is to create a new project. I'll be checking in the starter bits into GitHub starting a couple weeks from now. I need to figure out a new name for the project, so I don't have to rip off a name from William Gibson like I did last time :).
Some notes:
- Yes, it'll Continue reading

CC BY 2.0
Image by
Unique governance model allows projects to set their own course.
Windstream has been offering BCN services via wholesale for over a decade.
MongoDB reportedly files for an IPO; ADVA completes acquisition of MRV Communications; Mirantis launches Kubernetes and Docker Bootcamp.
NetApp and Microsoft will reveal more details about their partnership later this year.
