IDS and IPS explained
IDS : Intrusion Detection Systems.
An Intrusion Detection System (IDS) is a system that passively monitors the traffic on the network (by making a copy of the traffic). Once It detects a threat, it alerts and notifies the security team for further action.
How does an IDS work :
An IDS uses two methods of detection:
Types of IDS:
There two main types of IDSs :?
IPS : Intrusion Prevention Systems.
Just like an IDS, an IPS monitors and analyzes the traffic on a network to detect a threat. However, it goes a step further by taking to appropriate security measure to stop the threat.
领英推荐
How Does an IPS Work?
An IPS monitors network traffic in real-time and employs various security measures to counter identified threats. These measures can include:
IPS automates actions to contain certain threats without the need of intervention from the security team.
One major difference between the IDS and the IPS, is that the IPS analyzes the original traffic instead of making a copy, this means the traffic goes through the IPS.
Types of IPS:
However, it's important to note that IPS may occasionally generate false positives, inadvertently blocking legitimate traffic due to its proactive nature.
By: Karim Belhadj
#cybersecurity #networking #network #IPS #IDS #security
Telco Cloud, 5G Engineer @LabLabee | 5GaaS | OpenRAN | AWS | SDN | NFV | Bash Scripting
1 年Very helpful !