Advertisement

IPS

Intrusion Prevention System — like IDS but in-line and able to drop malicious traffic.

An IPS extends IDS by sitting in-line and dropping malicious traffic in real time. Because it’s in the data path, false positives cause outages — so tune signatures carefully (often starting in detect/alert mode) before enabling block mode. Modern NGFWs commonly bundle IPS as one feature set.

Advertisement

Related terms

Back to Security Architecture

Advertisement