Question: a) Distinguish between firewalls and IDSs. b) Why are IDS alarms often a problem? c) What is a false positive? d) What two types of

a) Distinguish between firewalls and IDSs.
b) Why are IDS alarms often a problem?
c) What is a false positive?
d) What two types of filtering do IDSs use?
e) Why is deep packet inspection important?
f) Why is deep packet inspection processing-intensive?
g) Why is packet stream analysis important?
h) Why does packet stream analysis place a heavy load on IDSs?

Step by Step Solution

3.46 Rating (172 Votes )

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock

a Firewalls only stop and log provable attack packets IDSs identify suspicious packets that may or m... View full answer

blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Document Format (1 attachment)

Word file Icon

883-C-S-S-A-D (2935).docx

120 KBs Word File

Students Have Also Explored These Related Systems Analysis And Design Questions!