Snort® Threat Prevention Components
Residing at the core of the threat prevention capabilities of Sourcefire® intrusion sensors, Snort® threat detection and prevention components work together to reassemble traffic, prevent evasions, detect threats, and output information about the threats without creating false positives or missing legitimate threats.
Benefits
- Select traffic to be inspected, ensuring that only vulnerable traffic is inspected
- Normalize traffic to ensure that it is consistent and in proper order
- Match traffic against one of the industries largest rule-sets.
Threat Prevention Componets
- Packet Classifier
- IP Defragmenter
- TCP Reassembler
- Portscan Processor
- Detection Engine
Register to read the full report.
Those who viewed this report were also interested in Extending Your Investment in Snort Technology Brief.
To learn more about Snort, visit snort.org.