Describe the term intrusion detection in the context of IT-
security?

Answer Posted / vik

Intrusion Detection refers to pro-active monitoring of a
network for unauthorized access as defined by the security
policy. It uses known patterns, of attacks, looks at
signatures, and can check against a known database of sites.
IDS features are built into many of the new Integrated
Security Appliances by vendors like Cisco, Juniper, etc.
Newer firewall vendors like Palo Alto networks are
integrating many features into the firewalls that overlap
with an IDS. Snort is a free IDS that has been available
for years. It is great- if you have some in house IT expertise.
IDS is often listed with IPS- Intrusion Prevention Systems.

Is This Answer Correct ?    7 Yes 1 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

How do we use rsa for both authentication and secrecy?

527


Explain how do we use rsa for both authentication and secrecy?

589


Explain what is difference between arp & rarp? How both of these protocols will work, and where it will use?

546


What is BSOD?

610


What is ransomware?

571






What is classful and classless routing?

564


What is remote access vpn?

575


What is mesh network

618


What are Digrams and Trigrams

690


Where do you get updates on security?

569


What is a Password?

610


How does the HTTP handle state?

597


What is malware?

572


What is frame relay, in which layer it comes

600


What is http flood?

592