Question: a) Distinguish between firewalls and IDSs. b) Why are IDS alarms often a problem? c) What is a false positive? d) What two types of
a) Distinguish between firewalls and IDSs.
b) Why are IDS alarms often a problem?
c) What is a false positive?
d) What two types of filtering do IDSs use?
e) Why is deep packet inspection important?
f) Why is deep packet inspection processing-intensive?
g) Why is packet stream analysis important?
h) Why does packet stream analysis place a heavy load on IDSs?
Step by Step Solution
3.46 Rating (172 Votes )
There are 3 Steps involved in it
a Firewalls only stop and log provable attack packets IDSs identify suspicious packets that may or m... View full answer
Get step-by-step solutions from verified subject matter experts
Document Format (1 attachment)
883-C-S-S-A-D (2935).docx
120 KBs Word File
