Chapter 17. Cisco IDS/IPS Fundamentals

This chapter covers the following topics:

IPS versus IDS

Identifying malicious traffic on the network

Managing signatures

Monitoring and managing alarms and alerts

Overview of the Cisco Next-Generation IPS solution

Cisco intrusion detection systems (IDS) and intrusion prevention systems (IPS) are some of many systems used as part of a defense-in-depth approach to protecting the network against malicious traffic. Cisco has many different platforms and options for implementing an IPS/IDS system, but the basic concepts apply across all of these platforms. This chapter focuses on the concepts of IPS/IDS in general.

Get Santos:CCNA Sec 210-260 OCG now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.