Signature Based IDS || Anomaly Based IDS

Описание к видео Signature Based IDS || Anomaly Based IDS

There are two popular approaches of Intrusion detection system that includes; signature based intrusion detection system and anomaly based intrusion detection system. Signature based detection work on patterns. Signature based detection vs anomaly based detection has been presented in tabular form in this tutorial. Signature based detection system detects only known attacks. Signature based attack detection is limited to known attacks only. Signature based attack detection is an important method of intrusion detection. On the other hand anomaly based intrusion detection system works on behavior. Anomaly based detection or anomaly based ids matches the behavior with predefined behavior, if behavior differs from predefined behavior it will generate alarm. Predefined ruling is difficult in anomaly based detection system.
#AzComputing
#SignatureBasedIDS
#AnomalyBasedIDS

Комментарии

Информация по комментариям в разработке