An IDPS or intrusion detection and prevention system, constantly checks source IP addresses on all incoming packets. If the IDPS finds any source IP address that accounts for more than 10% of incoming traffic over the last hour, it immediately blocks all packets from that address for the next 24 hours. Is this an effective IDPS solution to detect and prevent DoS (Denial of Service) attacks? Explain in detail.

icon
Related questions
Question
100%

An IDPS or intrusion detection and prevention system, constantly checks source IP addresses on all incoming packets. If the IDPS finds any source IP address that accounts for more than 10% of incoming traffic over the last hour, it immediately blocks all packets from that address for the next 24 hours. Is this an effective IDPS solution to detect and prevent DoS (Denial of Service) attacks? Explain in detail.

Expert Solution
trending now

Trending now

This is a popular solution!

steps

Step by step

Solved in 3 steps

Blurred answer