Network Security White Papers

IPS Vs. IDS: Similar on the Surface, Polar Opposites Underneath

Overview A common notion is that an Intrusion Prevention System (IPS) is nothing more than an Intrusion Detection System (IDS) deployed in-line with blocking capabilities. This paper explains why that notion is incorrect. Although IPS and IDS both examine traffic looking for attacks, there are critical differences. IPS and IDS both detect malicious or unwanted traffic. They both do so as completely and accurately as possible, at the speed of the network. But an IPS is an in-line device designed for automatic enforcement of network policy, whereas an IDS is an out-of-band device designed as a forensic tool for security analysts.

Further White Paper Details
Publisher3Com File FormatPDF
Date PublishedJuly 2007
FormatWhite Papers   
Topics

Quick Sitemap Links: