End Device
Image: File:Panasonic KX-F90.jpg: Pittigrilli derivative work: Georgfotoart, CC BY-SA 4.0, Wikimedia Commons
In short: A device at the “end” of a network connection that a human directly interacts with — e.g. PC, smartphone, tablet or printer.
In more detail: Unlike active network components such as switches or routers, which only forward data, an end device processes the data for actual use (displaying, entering, printing). In IT security, “endpoint” is a central term, since end devices are frequently targeted by attacks.
In Depth
Hosts vs. infrastructure devices
In network topology, a clear distinction is made between end devices (also called “hosts”) and infrastructure devices such as routers, switches or access points: infrastructure devices exist only to forward data as efficiently as possible; they themselves aren’t the “source” or “destination” of a communication in the actual sense. An end device, by contrast, is always either the sender or receiver of the actual payload data — it interprets and processes it for a concrete purpose (displaying a web page, printing a file, capturing a sensor reading), while infrastructure devices usually don’t need to “understand” the content of the data at all to forward it correctly.
The term “endpoint” in IT security
In IT security, the term “endpoint” has become established for this, because end devices are particularly attractive targets from an attacker’s point of view: they often run a wide variety of, sometimes outdated, software, are operated by humans (who can, for example, click on phishing links or open unsafe attachments), and have direct access to sensitive data. “Endpoint protection” or “endpoint detection and response” (EDR) accordingly refers to security software that runs specifically on end devices, to detect attacks there directly — unlike firewalls, which operate at the network level and can’t see what happens inside a single device.
IoT devices as special end devices
A growing category of end devices are IoT devices (Internet of Things) such as smart plugs, surveillance cameras or networked household appliances — they’re technically also end devices (send/receive their own data), but often differ in that they’re updated considerably less often and are less transparently verifiable than classic computers, which makes them particularly vulnerable targets from a security perspective.
Bring your own device (BYOD)
In corporate networks, the variety of end devices — from company-owned laptops to employees’ private smartphones (BYOD, “bring your own device”) — brings particular challenges: every additional, not centrally managed end device increases the potential attack surface of the entire network.
See also: Client, Smartphones, Firewall