16.3. Summary
Well, you had to go through a lot once again, but you have one more technology mastered. This chapter showed you the differences between IDS and IPS. You learned that you can use both types of sensors in your network; in fact, they help each other do a better job. You saw the different implementation scopes that the sensors can use: host-based and network-based. Each of the scopes has particular types of threats that they are best at defending against, but again, using them together gives you a more secure, layered defense.
You learned about the different approaches that can be employed when a sensor is scanning traffic. You took a deeper look at signature-based scanning, and even got to see the components that make signatures ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access