Chapter 7. Intrusion Detection Systems

Intrusion detection systems (IDSs) represent a sophisticated concept that involves a variety of technologies. What is safe to say is that IDSs are becoming as essential to network security as the firewall, and, in fact, many of the distinctions between an IDS and a firewall are blurring.

We'll cover the following topics in this chapter:

  • IDS types

  • NIDS limitations

  • Host-based NIDS

  • NIDS fusion

  • Snort: a popular NIDS

Get Mastering™ Network Security, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.