Make-to-Order Manufacturing
REGISTER| SIGN IN| HELP| HOME
Browse
Project Tools
About Us
For Vendors
Search by:   
Search
  Advanced Search >   

Research Abstract
IPS vs. IDS: Similar on the Surface, Polar Opposites Underneath by TippingPoint

> View this now

Published on: October 05, 2009
Type of content: WHITE PAPER
Format: Unknown
Length: 9 pages
Price: FREE

Overview:
A common notion is that an Intrusion Prevention System (IPS) is nothing more than an Intrusion Detection System (IDS) deployed in-line with blocking capabilities. This paper explains why that notion is incorrect.


Although IPS and IDS both examine traffic looking for attacks, there are critical differences. IPS and IDS both detect malicious or unwanted traffic. They both do so as completely and accurately as possible, at the speed of the network. But an IPS is an in-line device designed for automatic enforcement of network policy, whereas an IDS is an out-of-band device designed as a forensic tool for security analysts.


This difference in deployment and utility has two direct consequences:


  1. it changes the emphasis on device design requirements, and
  2. the methods hackers use to attack the devices.

Not surprisingly, these changes lead to different engineering designs and technology that may be ideal for IDS but may be sub-optimal for IPS, or vice versa.
IPS and IDS share four basic requirements:

  • Stability
  • Deterministic Network Performance
  • Minimize False Negatives
  • Minimize False Positives

Although these requirements appear to be similar, the differences between IPS and IDS deployment and purpose cause substantial distinctions in prioritizing the requirement, the meaning of the requirement, and implementation options available for meeting the requirement. Read this paper to learn more about the important differences between IDS and IPS.

> View Company Report
> View all content by this company
> Return to Search Results


         
The Complete KnowledgeStorm Network of Technology Search Sites. Focused searching for faster results.
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints




  TechTarget - The IT Media ROI Experts