RE: IPS vs application firewall
- From: "David Gillett" <gillettdavid@xxxxxxxx>
- Date: Wed, 15 Nov 2006 17:35:21 -0800
A firewall is always an inline device; usually, it functions as
a gateway in addition to its policy enforcement duties. One
consequence is that it imposes a certain overhead on even "good"
traffic. The firewall rulebase is generally pretty static (except
for a "stateful" element).
An IPS frequently links one or more sensors, frequently not
inline, with a dynamic inline filter that is activated to block
specific live traffic. Distributing the detection out of line
and activating only filters currently needed can improve both
flexibility and performance of the solution.
David Gillett
-----Original Message-----
From: listbounce@xxxxxxxxxxxxxxxxx
[mailto:listbounce@xxxxxxxxxxxxxxxxx] On Behalf Of krymson@xxxxxxxxx
Sent: Wednesday, November 15, 2006 12:35 PM
To: security-basics@xxxxxxxxxxxxxxxxx
Subject: IPS vs application firewall
This question came up and I'm unable to really answer this.
What is the difference between an IPS (an active IDS, really)
and an application firewall or a web application firewall?
--------------------------------------------------------------
-------------
This list is sponsored by: Norwich University
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of
Academic Excellence in Information Security. Our program
offers unparalleled Infosec management education and the case
study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this
esteemed degree, without disrupting your career or home life.
http://www.msia.norwich.edu/secfocus
--------------------------------------------------------------
-------------
---------------------------------------------------------------------------
This list is sponsored by: Norwich University
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.
http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------
- References:
- IPS vs application firewall
- From: krymson
- IPS vs application firewall
- Prev by Date: Re: IPS vs application firewall
- Next by Date: Re: Trade off: Full disk Encryption vs. Necessity
- Previous by thread: Re: IPS vs application firewall
- Next by thread: Re: IPS vs application firewall
- Index(es):
Relevant Pages
|