Network Sales and Services Handbook (Cisco Press Networking Technology)
1: | Are IDSs similar to firewalls? |
A1: | Intrusion Detection is considered to be a complement to network firewalls because they extend the security management capabilities of system administrators/managers to include things like the following:
|
2: | Which is the preferred IDS: Host-based or network-based? |
A2: | Network-based IDSs are the recommended solution because they protect every device on the network, detect problems quickly, and are not vulnerable to attack. Host-based IDSs are an effective solution in small networks where it is more cost-efficient to deploy multiple host-based IDSs rather than a single network-based IDS. |