IDS vs. Endpoint Lockdown
Posted by Mario Vuksan on Sun, Feb 15, 2009
Here's a great
illustration of effectiveness between IDS and Endpoint Lockdown as we have implemented it. Having a passive IDS (Intrusion Detection System) product in your Enterprise is akin sitting in a train and snapping pictures of the world that goes by. You may see bad things that you would have liked to have eliminated, but it is usually to little and to late.
On the other hand, your ability to eliminate all the unwanted or unknown components each and every time, gives you the protection for exactly the same motives that an IDS system was bought, additional visibility. As in example, you need to whack exactly what is wrong, and whack them all without a mistake.