<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>IDS AND IPS by </title>
      <link>https://padlet.com/muhdazreen18/idsandips</link>
      <description>Muhammad Azreen Bin Zullkeflee
01DIS17F2005</description>
      <language>en-us</language>
      <pubDate>2019-09-04 02:12:52 UTC</pubDate>
      <lastBuildDate>2019-09-04 03:01:12 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url>https://padlet.pics/1/image.webp?t=g_auto&amp;url=https%3A%2F%2Fpadlet.net%2Ficons%2Fpng%2F1f928.png</url>
      </image>
      <item>
         <title>What is IDS and IPS ?</title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379719941</link>
         <description><![CDATA[<div>1. <strong>An intrusion detection system (IDS): </strong>is a <mark>system that monitors network traffic for suspicious activity and issues alerts</mark> when such activity is discovered. While anomaly detection and reporting is the primary function, some intrusion detection systems are capable of taking actions when malicious activity or anomalous traffic is detected, including blocking traffic sent from suspicious IP addresses.</div><div><br>2. <strong>Intrusion Prevention Systems (IPS):</strong> live in the same area of the network as a firewall, between the outside world and the internal network. IPS <mark>proactively </mark><em><mark>deny</mark></em><mark> network traffic</mark> based on a security profile if that packet represents a known security threat.</div><div><br>The main difference between them is that IDS is a monitoring system, while IPS is a control system</div>]]></description>
         <enclosure url="" />
         <pubDate>2019-09-04 02:19:30 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379719941</guid>
      </item>
      <item>
         <title>IDS and IPS tools</title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379721360</link>
         <description><![CDATA[<ol><li>SolarWinds Security Event Manager </li><li>SNORT</li><li>Security Onion</li><li>Bro Network Security Monitor</li><li>WinPatrol</li><li>Osquery</li></ol><div><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2019-09-04 02:25:04 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379721360</guid>
      </item>
      <item>
         <title>Differences between proxy server and packet filtering ?</title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379723228</link>
         <description><![CDATA[<div>A packet filter <mark>examines each packet's IP header to control the network traffic into and out</mark> of your network. It is the most basic feature of a firewall. If the packet header information is valid, then the firewall <mark>allows the packe</mark>t. If the packet header information is not valid, the firewall <mark>drops the packet</mark> while  a proxy uses the same procedure to examine the packet header information as a packet filter, but it also examines the packet content. If the content does not match the criteria you set in your rules, the proxy takes action, such as denying the packet or stripping the content from the packet. A proxy operates at the application layer, as well as the network and transport layers of a TCP/IP packet, while a packet filter <mark>operates only at the network and transport protocol layer</mark>. Proxies can <mark>prevent potential threats from reaching your network</mark> without blocking the entire connection.</div>]]></description>
         <enclosure url="" />
         <pubDate>2019-09-04 02:31:33 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379723228</guid>
      </item>
      <item>
         <title>Bastion Host</title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379724083</link>
         <description><![CDATA[<div>A bastion host is a specialized computer that is deliberately exposed on a public network. From a secured network perspective, it is the<mark> only node exposed to the outside world and is therefore very prone to attack</mark>. It is <mark>placed outside the firewall in single firewall systems</mark> or, if a system has two firewalls, it is often placed between the two firewalls or on the public side of a demilitarized zone (DMZ).<br><br></div><div>The bastion host <mark>processes and filters all incoming traffic and prevents malicious traffic</mark> from entering the network, acting much like a gateway. The most common examples of bastion hosts are mail, domain name system, Web and File Transfer Protocol (FTP) servers. Firewalls and routers can also become bastion hosts,</div>]]></description>
         <enclosure url="http://i.stack.imgur.com/cEK45.png" />
         <pubDate>2019-09-04 02:34:54 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379724083</guid>
      </item>
      <item>
         <title>Honeypot and how this device can prevent the internal network</title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379724566</link>
         <description><![CDATA[<div>Honeypot are cyber systems and processes set up to appear operational <mark>to collect information on threat behavior and vectors</mark>. Real or simulated systems and processes are configured to appear as if they are real systems, often with vulnerabilities. Many of the previously described sensors are inserted within and around honeypots <mark>to collect data on threat behaviors</mark>. Honeypots have been used for everything from single servers to networks of servers, through client processes and files or information. Honeypots are a common technique and tool for sensoring uncontrolled threat sources</div>]]></description>
         <enclosure url="" />
         <pubDate>2019-09-04 02:36:59 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379724566</guid>
      </item>
      <item>
         <title></title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379724569</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://www.varonis.com/blog/wp-content/uploads/2018/10/difference-between-ids-ips-venn-diagram.png" />
         <pubDate>2019-09-04 02:37:00 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379724569</guid>
      </item>
      <item>
         <title></title>
         <author>muhdazreen18</author>
         <link>https://padlet.com/muhdazreen18/idsandips/wish/379725472</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://upload.wikimedia.org/wikipedia/commons/7/76/Honeypot_diagram.jpg" />
         <pubDate>2019-09-04 02:40:54 UTC</pubDate>
         <guid>https://padlet.com/muhdazreen18/idsandips/wish/379725472</guid>
      </item>
   </channel>
</rss>
