Intrusion Prevention Technical Specifications
Intrusion Prevention is an ID (Intrusion Detection) system that intercepts all traffic and detects malicious activity on either the network or individual computers or both. To detect malicious activity, Intrusion Prevention uses signature detection, a method that draws upon a database of known attack patterns. Intrusion Prevention's interception of malicious activity does not have any impact on system performance and is transparent to users, with the exception of the malicious user. If Intrusion Prevention detects malicious activity, Intrusion Prevention terminates the session for that activity. Intrusion Prevention is pre-configured with default settings custom-tuned by VistaWiz. Therefore, Intrusion Prevention does not require much customization, though you can change these defaults or add your own rules. Under The Hood What It Does Provides network intrusion detection and prevention How It Does It Uses Snort signatures with a custom VistaWiz scanning engine, pre-tuned default settings and updates ControlsÂ
|
