首页> 外文OA文献 >Analysis And Evaluation Snort, Bro, And Suricata As Intrusion Detection System Based On Linux Serverud
【2h】

Analysis And Evaluation Snort, Bro, And Suricata As Intrusion Detection System Based On Linux Serverud

机译:基于Linux Server的Snort,Bro和Suricata作为入侵检测系统的分析和评估 ud

摘要

Security and confidentiality of data on computer networks is currently audproblem that continues to grow. Installation of firewalls, antivirus, IDS (IntrusionudDetection System) / IPS (Intrusion Prevention System) and various other securityudapplications often require the best available installation cost is not small. Openudsource is the best solution to address the security issues that expensive. IntrusionudDetection System is a system designed to collect information about the activitiesudin the network, analyzing information, and give a warning. Snort, Bro andudSuricata is an open source Intrusion Detection System. By comparing how theudinstallation, configuration, warnings are displayed, and the resulting informationudcan to know the advantages and disadvantages of snort Snort, Bro and Suricata asudIntrusion Detection System.udThere are two stages of testing, such as scanning and penetration. Phaseudscanning is a scan of all ports, scanning is done by using NMAP applicationudwhich is found on Armitage. Stage penetration is done by using the menu hailudmary which is contained in Attack tab, hail mary is used to try all the exploitsudagainst computer target.udBased on Scanning and penetration process, Snort detects 926 alert,udSuricata detects 1218 alerts and Bro detects 128 low alerts. Snort and Suricataudease to install and update rule, Bro requires the least amount of resources.ud
机译:当前,计算机网络上数据的安全性和机密性一直在不断发展。防火墙,防病毒软件,IDS(入侵 udDetection系统)/ IPS(入侵防御系统)和各种其他安全性 ud应用程序的安装通常需要最佳的可用安装成本。开源 udsource是解决昂贵的安全问题的最佳解决方案。入侵 udDetection系统是旨在收集有关网络中活动 udn,分析信息并发出警告的系统。 Snort,Bro和 udSuricata是一个开源入侵检测系统。通过比较 udinstall,配置,警告和显示的信息的方式 ud可以知道snort Snort,Bro和Suricata作为 udIntrusion Detection System的优缺点。 ud测试分为两个阶段,例如扫描和渗透。 Phase udscanning是对所有端口的扫描,使用Armitage上的NMAP application ud完成扫描。阶段渗透通过使用“攻击”选项卡中包含的菜单雹/ udmary菜单完成,雹/玛丽用于尝试所有漏洞利用 udagainst计算机目标。 ud基于扫描和渗透过程,Snort检测到926个警报, udSuricata检测到1218个警报Bro检测到128个低警报。 Snort和Suricata udease安装并更新规则,Bro需要最少的资源。

著录项

  • 作者

    Ridho M. Faqih;

  • 作者单位
  • 年度 2014
  • 总页数
  • 原文格式 PDF
  • 正文语种 en
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号