By Nick Heath, 21 July 2008 11:16
The centre immediately flag up attacks on its customers' systems, alerting the company to methods such as port scanning, or attempts to get through the firewall and intrusion detection system.
Software filters out false positives from the one billion-plus logs that generate the huge amount of data seen on the screen here, leaving Symantec's 30-strong team of security experts at the Reading centre to deal with the most serious attacks.
Attacks are escalated when they reach a certain threshold or dangerous signatures are detected.
The centre also has a regularly updated list of the IP addresses of the servers that command botnets, allowing it to spot attempts to connect to systems by botnet command servers.
Photo credit: Nick Heath


In order to post a comment you need to be registered and logged in.
Log in or create your silicon.com account below