Article | REF: TE7550 V2

Firewalls. The pocketknife for enforcing computer security

Author: Maryline LAURENT

Publication date: October 10, 2017, Review date: January 3, 2024 | Lire en français

You do not have access to this resource.
Click here to request your free trial access!

Already subscribed? Log in!

Automatically translated using artificial intelligence technology (Note that only the original version is binding) > find out more.

    A  |  A

    9. IDS and IPS to detect and react to intrusions

    Intrusion Detection Systems (IDS) detect intrusions on a network by collecting and analyzing data provided by several network devices. Their aim is to detect any abnormal activity, such as probing activities (port scanning, fingerprinting ), system compromise attempts, log file audits and so on. They are based on two techniques that can be used in complementary ways: signatures of known attacks, which are based, among other things, on the search for patterns (sequence of bytes), verification of compliance with protocol standards, etc.; and the behavioral approach, which detects any deviation from a pre-established profile for a user, service or application, this profile being measured using metrics such as CPU (Central Processing Unit) load, volume of data transmitted, connection time to resources, etc. The disadvantage of the signature-based approach is that the signature database needs...

    You do not have access to this resource.

    Exclusive to subscribers. 97% yet to be discovered!

    You do not have access to this resource.
    Click here to request your free trial access!

    Already subscribed? Log in!


    The Ultimate Scientific and Technical Reference

    A Comprehensive Knowledge Base, with over 1,200 authors and 100 scientific advisors
    + More than 10,000 articles and 1,000 how-to sheets, over 800 new or updated articles every year
    From design to prototyping, right through to industrialization, the reference for securing the development of your industrial projects

    This article is included in

    Networks and Telecommunications

    This offer includes:

    Knowledge Base

    Updated and enriched with articles validated by our scientific committees

    Services

    A set of exclusive tools to complement the resources

    Practical Path

    Operational and didactic, to guarantee the acquisition of transversal skills

    Doc & Quiz

    Interactive articles with quizzes, for constructive reading

    Subscribe now!

    Ongoing reading
    IDS and IPS to detect and react to intrusions
    Outline