About this interactive
Six controls from the lesson, and what each one is for.
IDS and IPS. An intrusion detection system notices attacks and suspicious behavior and tells you. An intrusion prevention system also takes action, blocking what it detects. (The video says "intrusion protection"; the usual name is intrusion prevention.) Why not always prevent? Anything that judges behavior has false positives, and an IPS in front of your web servers that wrongly blocks customers is a business problem. A network-based IDS or IPS (NIDS, NIPS) watches network traffic; a host-based one runs on a single machine.
Proxy server. Users' web requests go to the proxy, which fetches the content and passes it on. That lets it block sites ("you can't go there"), scan what comes back for viruses, and control the flow.
Port security. Set on a switch, port by port, to control which devices may use each port, so someone who gets into the building cannot just plug in.
Network access control (NAC). Valid credentials are not enough: is the machine patched, is its antivirus up to date? NAC checks the device's state and keeps it off the network until it meets the requirements. It is one way to put zero trust into practice: no device is trusted just because it is inside the building, and it is checked again, not only once.
Deception. A honeypot is a decoy machine in its own segment; a honeynet is a whole decoy network; a honey file is a tempting file no real user needs; a honey token is any decoy data. None is real, so anyone who touches one is suspect, and you watch how they work.
About TechKnowSurge
TechKnowSurge builds IT and cybersecurity professionals through hands-on, concept-first training built around real understanding — not memorization. Free interactive tools, structured programs, and 25+ years of real-world experience, all in one place.
Explore free tools and programs →