Dissertation > Excellent graduate degree dissertation topics show
The Design and Application of C/S Mode IDS Based on Snort
Author: WangHuiXia
Tutor: HanYongFei
School: Beijing University of Technology
Course: Computer Science and Technology
Keywords: Intrusion Detection System Snort C/S
CLC: TP393.08
Type: Master's thesis
Year: 2013
Downloads: 28
Quote: 0
Read: Download Dissertation
Abstract
|
Along with the rapid development of the network, the event that the personal data and important enterprise resource information is exposed frequently happens. As the endless hacking event, corporate data suffers varying degrees of damage, which has the largest influence is tens of millions of users’passwords was leaked and these users came from many famous sites such as CSDN、 RenRen etc. Along with these events, the issues of information security also attracted people’s attention. Intrusion detection technology is an important component in the network security, same as firewall, data encryption, and other traditional security measures. It monitors and prevents the real-time behavior in the network.Currently, the detection methods of intrusion detection systems are mainly divided into:abnormality detection and misuse detection. The detection method of the anomaly detection is like this:firstly, it defines the standard of normal data, after it captured the information from the network or other place, it will compare these data with the standard.If the data is not meet the standard, the intrusion detection system will alert.This method has a higher false alarm rate. The method of misuse detection is like this:firstly, it save the characteristics of known intrusion, then compare the captured information with these characteristics. If these data is consistent with these characteristics, the intrusion detection system will alert. This method has a higher missing report rate. Snort is an open source intrusion detection system based on misuse detection, which has the advantage of cross-platform and lightweight.This paper firstly analyzes many security threats in network environment, which presents the importance of intrusion detection system, then describes the components and working principle of intrusion detection system, followed by analysis of Snort’s main detection engine and rules. Next, I introduce the key technology to improve performance of intrusion detection and to resolve the contradiction between the gradually increased workload of intrusion detection systems and the gradually increased rule base. On this basis, firstly, this paper adds the width-first searching algorithm based on depth-first searching algorithm; secondly, this paper presents an idea of a C/S mode Snort, this idea increases server support for traditional Snort, to share the workload of client Snort. Thus, we can improve the work efficiency of Snort in two ways.
|
Related Dissertations
- Association rule mining based Intrusion Detection System Research and Implementation,TP393.08
- Design of Network Intrusion Detection System Based on FPGA,TP393.08
- Snort intrusion detection system based on improved system design and implementation,TP393.08
- Study of snort -based IPS,TP393.08
- Petri net -based network intrusion detection system Research and Implementation,TP393.08
- Mechanisms based on trust metrics Research and Implementation of Intrusion Detection System,TP393.08
- Design and implementation of intrusion detection system based on association rules,TP393.08
- The Research of Network Intrusion Detection System in Campus LAN,TP393.08
- The Design of Campus Network Distributed Intrusion Detection System Based on Snort,TP393.08
- Research and Implement of Mining Association Rule Based on Snort Intrusion Detection System,TP393.08
- Research on Matching Process and Algorithm Improvement of Intrusion Detection,TP393.08
- Research and Implementation on Method of Attack Signature Based IDS Testing Data Generating,TP393.08
- Application and Research of Intrusion Detection System Base on Honeypot,TP393.08
- Collaborative Intrusion Detection Research in Peer-to-Peer Network,TP393.08
- Research and Design of IDS Based on IPv6,TP393.08
- The Research and Application of Distributed Intrusion Detection System Based on Snort,TP393.08
- Design and Implementation of Instrision Detection System Based on Linux,TP393.08
- Research of Network Intrusion Detection Method Based on Outlier Mining,TP393.08
- Design and Implementation of Network Worm Defense System for The Base Level Army,TP393.08
- The Research and Improvement of Intrusion Detection System Based on Snort,TP393.08
- Research on Detection and Defense Method of DoS Attacks in WLAN,TN925.93
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|