Implementation of intrusion detection system using snort

Implementation of intrusion detection system using snort. Journal of Advanced Computing Technology and Application, 1 (1). pp. 9-15. ISSN 2672-7188 (2019)



Abstract

Intrusion Detection System (IDS) is a vital network security tool for protecting the network systems that consists of software and hardware tomonitor all the inbound and outbound network and system activities for malicious activitiesin the network traffic. The purpose of IDS is to assists the network administrator or the systemby sending alerts and notifications when there are possible incidents, which violations of computer security policiesexist. However, IDS causes a false alarm when attacker perform modifications at the rules settings. Therefore, this study performs experiment to detect anomaly incident and intruder in the network system. The implementation on snort development is provided and testing is executed in order to prove that snort capable to detect intruder. The findings showed that anomaly user can be detected based on port scanning, telnet to port to detect the unusual traffic and monitoring using NMAP to identify abnormal activities. As a result, the impact of Snort could bring an alternative solution on network monitoring in terms of continuous detection on unusual traffic movements, cost effective since Snort is an open source product and it can be customized to suit with the network environment.

Item Type: Article
Keywords: Intrusion detection system, Snort, Network security
Taxonomy: By Subject > Computer & Mathematical Sciences > Computer Technology and Networking
Local Content Hub: Subjects > Computer and Mathematical Sciences
Depositing User: Eza Eliana Abdul Wahid
Date Deposited: 03 Mar 2022 23:46
Last Modified: 04 Mar 2022 08:22
Related URLs:

Actions (login required)

View Item View Item