Comprehensive and Detailed Explanation (250–350 words)
===========
The EC-Council CCISO program clearly defines the primary difference between IDS and IPS as action capability. An IDS detects and alerts, while an IPS detects and actively blocks or prevents malicious traffic.
CCISO documentation explains that both IDS and IPS may use signatures, anomaly detection, or behavioral analysis, making Options B and D incorrect. Deployment location (Option C) varies by architecture and is not the defining difference.
Because IPS operates inline and can take automated action, Option A correctly identifies the primary distinction.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit