I was thinking that IDS was to detect not autorized access in a network.
OK let me explain you what i want. I want in my network to analyze the traffic and determine if someone that is not my user is in my network.
Sometimes come people to the company and i think they use my network or maybe they are doing something that makes my network slow. I think they have their own dns or mailserver, how can i monitor my network in that way.
I want to know if there is new users in my network that i dont know or what my users are using in my network.
What can i do? I feel as i dont have control or i dont know what is happening in my network when people is connected.