Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

SP 800-94 Rev. 1 (DRAFT)

Guide to Intrusion Detection and Prevention Systems (IDPS)

Date Published: July 2012
Comments Due: August 31, 2012 (public comment period is CLOSED)
Email Questions to: 800-94comments@nist.gov

Author(s)

Karen Scarfone (Scarfone Cybersecurity), Peter Mell (NIST)

Announcement

NIST announces the public comment release of Draft Special Publication (SP) 800-94 Revision 1, Guide to Intrusion Detection and Prevention Systems (IDPS). This publication describes the characteristics of IDPS technologies and provides recommendations for designing, implementing, configuring, securing, monitoring, and maintaining them. The types of IDPS technologies are differentiated primarily by the types of events that they monitor and the ways in which they are deployed. This publication discusses the following four types of IDPS technologies: network-based, wireless, network behavior analysis (NBA), and host-based. Draft SP 800-94 Revision 1 updates the original SP 800-94, which was released in 2007.

Abstract

Keywords

information security; intrusion detection
Control Families

Audit and Accountability; Incident Response; Planning;