WhileNetworking

  • Home
  • CCNA
  • Cisco Packet Tracer Download
    • Cisco packet tracer 6.3
    • cisco packet tracer 6.2
    • Cisco Packet Tracer 7
  • Linux Server Management
  • About Us
  • Privacy Policy
  • Contact Us

Know the basic of True/False, Positive/Negative IPS Alerts

You are most welcome to this post.
True/False, Positive/Negative IPS Alerts
Really thanks to you for your interest in this topics. :)

When deployed in real environments, security controls such as IPS or IDS will produce erroneous alerts, either because of their misconfiguration or because of the environment, in which legitimate activity may resemble malicious activity, and vice versa.

  • False positive: A security control acted when malicious activity did not take place.
  • False negative: A security control did not act when malicious activity took place.
  • True positive: A security control acted when malicious activity took place.
  • True negative: A security control did not act, because there was no malicious activity.

All decisions of section controls can be sorted as one of the following:

Correct positives: The warrantee keep, much as an IPS or IDS device, acted as a aftermath of vindictive state, which represents inbred and optimal surgery.

Unharmonious positives: The assets curb that is acted as a upshot of non-malicious manifestation, which represents an occurrence, mostly caused by too waterproofed proactive controls (which do not permit all legitimate traffic) or too mellow activated controls (with too high descriptions of the aggress).

Lawful negatives: The security mechanism has not acted, because there was no vixenish reflexion, which represents practice and best cognition.

Sham negatives: The protection examine has not acted, flatbottomed though there was malicious expression, which represents an nonachievement, mostly caused by too easygoing proactive controls (which permit solon than retributive least authorized interchange) or too limited excited controls (with too-specific descriptions of the snipe).

As you can deduct from these decisions, addressing the false-positive or false-negative issues appears to be a equalization chore. As you melody the scheme to be fewer regulative to take imitation positives, you leave growth the likeliness of dishonest negatives, and evil versa. Thus, section criterion systems moldiness ofttimes be expertly adjusted to succeed an received balance between these decisions.

Remedy controls (for lesson, IPS sensors) are generally tuned to be inferior sore in condition not to area morganatic traffic, and detective controls (for monition, IDS sensors) are adjusted to be statesman sensitive at a cost of unreal positives. Often, you can union a relaxed clogging try with a huffy tec control to acquire insight into the fictitious negatives of the frustrating curb

Aug 2, 2018Himadri
 

Share with friends :

  • Click to share on Twitter (Opens in new window)
  • Click to share on Facebook (Opens in new window)
  • Click to share on LinkedIn (Opens in new window)
  • Click to share on Tumblr (Opens in new window)
  • Click to share on Pinterest (Opens in new window)
  • Click to share on WhatsApp (Opens in new window)
  • Click to email a link to a friend (Opens in new window)
  • Click to share on Pocket (Opens in new window)
  • Click to share on Telegram (Opens in new window)
  • Click to share on Reddit (Opens in new window)
  • Click to print (Opens in new window)

Related

Intrusion Prevention System (IPS) Alerts - know the basicHow IPS Alerts Analysis works

Leave a Reply Cancel reply

7 + four =

Himadri

Hi, I'm Himadri. I love blogging with tech topics, specially computer networking. We'll have more fun in the upcoming day. Stay with me. :)

August 2, 2018 Cyber Security1,145
Feel Free to Share :)
0
GooglePlus
0
Facebook
0
Twitter
0
Digg
0
Delicious
0
Stumbleupon
0
Linkedin
0
Pinterest
Find Us on Facebook
Choose a category !!
  • CCNA
  • Cisco Certification Exam
  • cisco packet tracer 6.2
  • Cisco packet tracer 6.3
  • Cisco Packet Tracer 7
  • Cisco Packet Tracer 7.1
  • Cisco Packet Tracer 7.2.1
  • Cisco Packet Tracer 7.3
  • Cyber Security
  • Engineering Ebooks
  • Excel
  • IELTS Ebook
  • Internet
  • Know computer
  • Know your computer
  • Laser Processing of Material
  • Linux installation and server management
  • PDF
  • Technology
  • Uncategorized
Top posts
  • Packet tracer 6.2 student version for Linux - Free download
  • Free download cisco packet tracer 6.3 for Linux, with tutorial version
  • Autonomous and light weight access point
Archieves
Get latest updates by Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 19 other subscribers
W
SC
wordpress counter
Analytics
Recent Comments
    Browse by categories
    Cyber SecurityLinux installation and server managementCCNAKnow your computerKnow computerCisco Packet Tracer 7UncategorizedCisco Certification ExamInternetPDFCisco Packet Tracer 7.3Engineering EbooksCisco packet tracer 6.3cisco packet tracer 6.2Cisco Packet Tracer 7.1TechnologyExcelLaser Processing of MaterialCisco Packet Tracer 7.2.1IELTS Ebook
    Feel free to contact with us

    Hi, any kind of comment or suggestion is valuable to us. So feel free to contact with us.

    Email: himadri.shekhar.bd@gmail.com

    Name: WhileNetworking.com

    2021 © WhileNetworking