Intrusion Detection System Types Flashcards
1
Q
Behavior Based IDS
A
Looks for behavior that isn’t allowed and acts accordingly.
2
Q
Anomaly Based IDS
A
Detects behaviors that are unusual.
Once a baseline is established, then this IDS can detect anomalies.
3
Q
Network Based IDS
A
Monitors all network traffic. Implements active and passive responses.
4
Q
Signature Based IDS
A
Relies on a database that contains the ID or signature of possible attacks. The signature database has to stay up to date in order for it to be effective.