 |
Intrusion Detection
and Prevention::
Security products provide two primary benefits: visibility and control.
It is the combination of these two benefits that make it possible
to create and enforce a security policy to make the private computer
network secure.
For some businesses a properly configured firewall may be enough and
for others it may not be enough. Network intrusion detection systems provide the visibility of the attacks by
providing intruder logs or data logs, however these systems do not prevent intrusions.
The key to preventing intrusions is to protect the infrastructure
that applications run on: including the operating systems, internet
connections and production systems. Preventing executable software
from writing to locations or reading from locations for which it is
not authorized. Access controls are what allow and prevent running
software to initiate, execute, run to completion, and perform operations,
whether illegal or authorized.
The combination of detection and prevention combined with security
policies, and access controls provide a more secure networked environment.
Intrusion prevention systems are not a single product solution and
require a consultation. |
|