Abstract
Cisco Intrusion Detection is a complete security approach that provides a wide range of intrusion detection capabilities to help administrators secure and monitor their network environments against threats and security breaches. Cisco focuses on two primary types of intrusion detection systems (IDSs)—Host IDSs, and Network IDSs. Within each of these systems, Cisco develops products that promote an “active defense” to secure the network environment. Cisco Active Defense focuses on three points, which are, detection, prevention, and reaction. Cisco delivers each of these concepts through flexible Network IDS hardware, host-based IDS software, Cisco IDS sensor software, and scalable Cisco IDS management software. At the heart of the Cisco Intrusion Detection System is the Cisco Network and Host IDS software that provides accurate threat detection, intelligent threat investigation and mitigation, and simplified management. The software imparts comprehensive threat detection, delivering a hybrid system that uses methods including pattern recognition, protocol analysis, traffic anomaly detection, and protocol anomaly detection. Accurate detection leads to threat investigation and mitigation. When an attack is detected, Cisco's Threat Response technology works with Cisco IDSs to eliminate false alarms and escalate authentic attacks.
Talk to us
Join us for a 30 min session where you can share your feedback and ask us any queries you have
More From: Cisco Security Professional's Guide to Secure Intrusion Detection Systems
Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.