-A great advantage: It stops trigger packets. Also it can use stream normalization techniques.
-Operating system independent and cost-effective as it can be added like a WIC to the Cisco router (ISR router). At our company we have chosen the IPS WIC module to match with our Cisco 3745 router instead of KASPERSKY, MacAfee or Symantec IPS sensor.
Valuable Features:
Room for Improvement:
-Limited reporting capability based on platform and definition file. Also consider more latency and delay when using IPS as it has to analyze the traffic and then take action which in return adds delay to the network.
-It lacks the capability to detect operating system attacks despite the fact that software based IPS does.
Other Advice:
Cisco IPS Sensor analyzes traffic. As opposed to IDS (Intrusion Detection Sensor), IPS Sensor detects and takes action for the detected threats and attacks (instead of just detecting with no action which is what IDS does)
![IPS Sensor [EOL] Logo](https://images.peerspot.com/image/upload/c_scale,dpr_3.0,f_auto,q_100,w_100/0dra2w8zbx5vrvwmhkdswx9l90ys.jpg?_a=BACAGSGT)