Summary

Intrusion detection is fast becoming a necessary component of all network security designs. Although many security devices, such as firewalls and other security features on routing devices, can protect against a large variety of attacks, it is critical to have intrusion detection in place to protect against the ones that slip through. Cisco's IDS solution provides a comprehensive mix of devices that allow intrusion detection to take place via different means. This chapter went through Cisco's various IDS implementations. We discussed how these implementations differ from each other, as well as their similarities. We looked in detail at the various response mechanisms that are available in the IDS devices. We then looked at some implementations ...

Get Network Security Principles and Practices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.