This document provides an overview of intrusion detection systems (IDS) and intrusion prevention systems (IPS). It discusses what IDS and IPS are, how they work, and where they should be placed in a network topology. It also covers components of IDS/IPS like sensors and signatures, and the differences between IDS and IPS in terms of capabilities. Network-based IPS implementations using Cisco IPS solutions are also reviewed.