Hardening Your Network

Sean-Philip Oriyano · 2017

This chapter offers guidance to users on how to define network hardening, understand why they want to do it, and recognize how hardened systems are by default. A network-based intrusion detection system (NIDS) is an IDS that fits into this category. It can detect suspicious activity on a network, such as misuse, SYN floods, MAC floods, or similar types of behavior, and would be the most advantageous for deployment onto a network. A host-based IDS (HIDS) is another type of IDS that makes an appearance in large network environments, and it is solely responsible for monitoring activity of many different types on an individual system rather than a network. Host-based IDSs can get kind of confusing as far as what features they are supposed to have. An IDS provides a way of detecting an attack, but not dealing with it. An IDS is limited as to the potential actions it can take when an attack or some sort of activity occurs.

Read the paper · More papers on PaperTik