Host-based intrusion prevention system

The Host-based intrusion prevention system (HIPS) is very similar in concept to network intrusion prevention in terms of the logic of the tool. The primary difference is the network intrusion prevention tool is responsible for detecting as much as possible across multiple operating system platforms and applications while deployed on the network wire. This is a challenge even in finely-tuned environments because protection of the system asset is a configuration on the network, not the host itself. The host knows what is running, and if there is a network intrusion prevention misconfiguration, the host is still protected by the HIPS. Host-based intrusion prevention leverages being installed on the system it ...

Get Enterprise Security: A Data-Centric Approach to Securing the Enterprise now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.