Encyclopedia > Network intrusion-detection system

  Article Content

Network intrusion detection system

Redirected from Network intrusion-detection system

A network intrusion detection system (NIDS) is a system that tries to detect cracker activity such as denial of service attacks, port-scans or even attempts to crack into computers.

The NIDS does this by reading all the incoming packets and trying to find suspicious patterns. If, for example, a large number of TCP connection requests to a very large number of different ports is observed, one could assume that there is someone committing a "portscan" at some of the computer(s) in the network. It also (mostly) tries to detect incoming shellcodes in the same manner that an ordinary intrusion detection systems does.

Often, network intrusion detection systems work with other systems as well. They can for example update some firewalls' blacklist with the IP addresses of computers used by (suspected) crackers.

See also: intrusion detection system, intelligent intrusion detection systems[?]



All Wikipedia text is available under the terms of the GNU Free Documentation License

 
  Search Encyclopedia

Search over one million articles, find something about almost anything!
 
 
  
  Featured Article
1904

... Contents 1904 Centuries: 19th century - 20th century - 21st century Decades: 1850s 1860s 1870s 1880s 1890s - 1900s - 1910s 1920s 1930s 1940s 1950s Years: ...

 
 
 
This page was created in 27.3 ms