WHAT IS IDS
1. AN INTRUSION DETECTION SYSTEM IS A DEVICE OR SOFTWARE APPLICATION THAT MONITORS A NETWORK OR SYSTEMS FOR MALICIOUS ACTIVITY OR POLICY VIOLATIONS.
2. ANY INTRUSION ACTIVITY OR VIOLATION IS TYPICALLY REPORTED EITHER TO AN ADMINISTRATOR OR COLLECTED CENTRALLY USING A SECURITY INFORMATION AND EVENT MANAGEMENT SYSTEM.
TYPES OF IDS
NIDS
NETWORK INTRUSION DETECTION AND PREVENTION
A NETWORK INTRUSION DETECTION SYSTEM (NIDS) IS A TYPE OF IDS THAT ATTEMPTS TO DETECT MALICIOUS NETWORK ACTIVITIES (E.G., PORT SCANS AND DOS ATTACKS) BY CONSTANTLY MONITORING NETWORK TRAFFIC.
THE NIDS WILL THEN REPORT ANY ISSUES THAT
IT FINDS TO A NETWORK ADMINISTRATOR AS LONG AS IT IS CONFIGURED PROPERLY.
NIDS IS AN IMPORTANT PART OF A COMPREHENSIVE SECURITY SOLUTION. BY DETECTING MALICIOUS ACTIVITY, NIDS CAN HELP TO PROTECT NETWORKS FROM ATTACK.
HERE ARE SOME OF THE BENEFITS OF USING NIDS
1. CAN DETECT A VARIETY OF ATTACKS.
2. CAN BE DEPLOYED IN A VARIETY OF WAYS
3. CAN HELP TO PROTECT NETWORKS FROM ATTACK
HERE ARE SOME OF THE LIMITATIONS OF USING NIDS
1. CAN BE EXPENSIVE.
2. CAN BE COMPLEX TO CONFIGURE AND MANAGE.
3. CAN GENERATE A LOT OF FALSE POSITIVES.
____________
DIFFREENCE BETWEEN IPS AND IDS
Comments
Post a Comment