Académique Documents
Professionnel Documents
Culture Documents
Prevention System)
June 2014
What is HIPS?
The Intrusion Prevention System (IPS) is an advanced tool for information systems security,
similar to the IDS, which aims to reduce the impact of an attack. It is an active IDS (intrusion
detection system) which detects automated scanning of ports and block them if needed. IPS can
therefore counter the known and unknown attacks.
Interactive Mode
Policy-based mode
Learning Mode
As you have seen above, there are different modes of operation.We will keep the default mode
(Automatic mode), which allow everything except the actions defined in rules, where it will ask
permission. Here below, some basic rules to secure your system:
A rule is already present (registry and drivers), dont't touch it. Click New ... bottom left
Give a name to the rule (Startup) and go to the "Target regsitry" tab:
Check "Modify startup settings" and click on OK to validate.
For all operations (create, modify, delete ...) made to the registry key related to system
startup, an authorization request will be made.
This document entitled Eset - Configure the HIPS (Intrusion Prevention System) from Kioskea (en.kioskea.net) is
made available under the Creative Commons license. You can copy, modify copies of this page, under the conditions
stipulated by the license, as this note appears clearly.