Defined term
Intrusion Detection Systems (IDS)
Intrusion Detection Systems (IDS): (IDS), (network-based) IDSs which detect attacks by capturing and analyzing network packets.
Verified
📚 Multi-Source
Cybersecurity
Definition
(IDS), (network-based) IDSs which detect attacks by capturing and analyzing network packets. Listening on a network segment or switch, one network-based IDS can monitor the network traffic affecting multiple hosts that are connected to the network segment.
Alternative Definitions
- Definition 2
Hardware or software product that gathers and analyzes information from various areas within a computer or a network to identify possible security breaches, which include both intrusions (attacks from outside the organizations) and misuse (attacks from within the organizations.) (CNSSI-4009) (NISTIR)
Sources
1
Committee on National Security Systems Glossary CNSSI 4009-2015
View Source2
The Cyber Glossary
View Source