2013•Auerbach Publications eBooksRequires access

Intrusion Detection and Prevention Systems (IDPSs)

Mohssen M. Z. E. Mohammed, Al‐Sakib Khan Pathan

Open publisher page 7 citations

Abstract

This chapter discusses the Intrusion Detection and Prevention Systems (IDPS) detection technologies, which are signature-based detection, anomaly-based detection, and stateful protocol analysis. It explains about the IDPS components, which are sensors or agents, management server, database server, and console. The chapter describes the IDPS security capabilities against authorized activities and also discusses the types of IDPS technologies: network-based IDPS, wireless IDPS, network behavior analysis system, and host-based IDPS. It explores the advantages of integrating multiple IDPS technologies and integrating different IDPS products. Some IDPSs can also use the authenticator information to define acceptable activity differently for multiple classes of users or specific users. Network-based IDPSs are placed at a strategic point or points within the network to monitor traffic to and from all devices in the network. Network-based IDPSs provide extensive and broad detection capabilities. A wireless IDPS monitor’s wireless network traffic and analyzes wireless networking protocols to identify malicious behavior.

About this research paper

What this paper is about

This chapter discusses the Intrusion Detection and Prevention Systems (IDPS) detection technologies, which are signature-based detection, anomaly-based detection, and stateful protocol analysis. It explains about the IDPS components, which are sensors or agents, management server, database server, and console. The chapter describes the IDPS security capabilities against authorized activities and also discusses the types of IDPS technologies: network-based IDPS, wireless IDPS, network behavior analysis system, and host-based IDPS. It explores the advantages of integrating multiple IDPS technologies and integrating different IDPS products. Some IDPSs can also use the authenticator information to define acceptable activity differently for multiple classes of users or specific users. Network-based IDPSs are placed at a strategic point or points within the network to monitor traffic to and from all devices in the network. Network-based IDPSs provide extensive and broad detection capabilities. A wireless IDPS monitor’s wireless network traffic and analyzes wireless networking protocols to identify malicious behavior.

Why it matters

OpenAlex reports 7 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

This chapter discusses the Intrusion Detection and Prevention Systems (IDPS) detection technologies, which are signature-based detection, anomaly-based detection, and stateful protocol analysis. It explains about the IDPS components, which are sensors or agents, management server, database server, and console. The chapter describes the IDPS security capabilities against authorized activities and also discusses the types of IDPS technologies: network-based IDPS, wireless IDPS, network behavior analysis system, and host-based IDPS. It explores the advantages of integrating multiple IDPS technologies and integrating different IDPS products. Some IDPSs can also use the authenticator information to define acceptable activity differently for multiple classes of users or specific users. Network-based IDPSs are placed at a strategic point or points within the network to monitor traffic to and from all devices in the network. Network-based IDPSs provide extensive and broad detection capabilities. A wireless IDPS monitor’s wireless network traffic and analyzes wireless networking protocols to identify malicious behavior.

Key concepts: Intrusion detection system, Intrusion prevention system, Computer science, Computer security

Related papers

Back to paper searchBrowse research topicsOriginal source
Intrusion Detection and Prevention Systems (IDPSs) — Research Paper | ScholarLens