Intrusion Detection and Prevention Systems
If someone has broken into your network, how would you know? I mean, it’s not like you’re going to find broken windows or the door left wide open, right? Although it’s true that you won’t be dusting for prints, bad guys who break into networks still leave clues behind that can help you sleuth out their identities as well as how they gained access. A great tool for doing network detective work is known as an intrusion detection system (IDS).
Firewalls are designed to block nasty traffic from entering your network, but an IDS is more of an auditing tool: It keeps track of all activity on your network so you can see if someone has been trespassing. Because the technology behind IDSs is fairly new, people are busy developing ways to combine IDS technology with existing firewalls.
![]() |
An intrusion detection system does not replace a firewall on your network! |
There are two kinds of IDSs that can detect attacks or...