Network security measures target network devices such as routers, switches, and firewalls to make sure that attacks are stopped at their entry points before they spread on computers hosts through LAN.
Network security starts from
authenticating any user. Once authenticated,
firewall enforces access policies to prevent
unauthorized access such as worms, virus, and trojans that could harmful computer contents.
Then
intrusion prevention system (IPS) helps detect and prevent such malware by monitoring the network for suspicious traffic for contents, volume and anomalies to protect the network from other attacks such as denial of service (DoS).
Audit tools track individual events occurring on the network for a later high level analysis.