asked 229k views
5 votes
Anomaly-based intrusion detection systems compare current activity with stored profiles of normal (expected) activity.

1 Answer

6 votes

Anomaly-based IDS pg. 250 is an intrusion detection system that compares current activity with stored profiles of normal (expected) activity. While an intrusion detection system that uses pattern matching and stateful matching to compare current traffic with activity patterns (signature) of known network intruders is Pattern-(signature) based IDS pg. 250.





answered
User Beau Nouvelle
by
8.2k points
Welcome to Qamnty — a place to ask, share, and grow together. Join our community and get real answers from real people.