Information Security Class Discussion Board

need answers for 2 different discussion board.

Question 1;

What is the difference between an Intrusion Detection System (IDS) and an Intrustion Prevention System (IPS)? Which one is better for a corporate environment and why?

Question 2:

What elements should be included in an Information Security Policy for a corporate entity? What elements should be included in the policy no matter the size of the business ? Why?



