1.1.2 The difference between IDS and IPS
can be noticed the difference between the two concepts right in the name: "discovery" and "stop". The IDS system is designed primarily for the purpose of detecting and warning of the risk of intrusion on a computer network it is protecting in the meantime, an external system IPS detection capability can self-propelled against the risks under the regulations is the administrator settings available.
However, the difference is in fact not really clear. Some IDS systems are designed with the ability to prevent such an optional function. While some systems do not carry the full IPS functionality of a prevention system in the true sense.
The question arises as selected solutions, IDS or IPS? The answer depends on the size and nature of each specific computer network and security policies of the network administrator. In the case of small-scale networks, with a security server, the solution scales nhacnhieu IPS often than by nature combines detection, alerting and blocking of it. However with larger networks, the function block is usually entrusted to a specialized products such as a firewall. Meanwhile, the warning system will only need to monitor, detect and send alerts to a system other deterrent. The division of responsibility will make the network security to become more flexible and more efficient.
đang được dịch, vui lòng đợi..
