Types of IDS IPS CCNP
1.1 Types of IDS/IPS
The following are the types of IDS/IPS
1.1.1 Network Based
It performs packet sniffing and evaluates network traffic to recognize and prevent from suspicious activity. They are typically placed inline mode as a network firewall. They receive packets, examine them, decide if they should be permitted, and allow satisfactory packets to pass through.
Figure 2- 3 Network based IPS
1.1.2 Host-based
It is similar to network-based , apart from that a host-based product senses the characteristics of a single host and the events occurring within that host, similar to sensing network traffic (only for that specific host), system logs, running processes, file access and modification etc.
The following are the types of IDS/IPS
1.1.1 Network Based
It performs packet sniffing and evaluates network traffic to recognize and prevent from suspicious activity. They are typically placed inline mode as a network firewall. They receive packets, examine them, decide if they should be permitted, and allow satisfactory packets to pass through.
Figure 2- 3 Network based IPS
1.1.2 Host-based
It is similar to network-based , apart from that a host-based product senses the characteristics of a single host and the events occurring within that host, similar to sensing network traffic (only for that specific host), system logs, running processes, file access and modification etc.