Chapter 16Intrusion Prevention

CISCO CCNA SECURITY EXAM OBJECTIVES COVERED IN THIS CHAPTER:

  • images6.1 Describe IPS deployment considerations
    • Network-based IPS vs. host-based IPS
    • Modes of deployment (inline, promiscuous - SPAN, tap)
    • Placement (positioning of the IPS within the network)
    • False positives, false negatives, true positives, true negatives
  • images6.2 Describe IPS technologies
    • Rules/signatures
    • Detection/signature engines
    • Trigger actions/responses (drop, reset, block, alert, monitor/log, shun)
    • Blacklist (static and dynamic)

 It is no longer acceptable ...

Get CCNA Security Study Guide, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.