Title
Study of snort-based IDS
Abstract
General trend in industry is a shift from Intrusion Detection Systems (IDS) to Intrusion Prevention Systems (IPS). In this paper, we have investigated the motivations behind this trend. In addition, we have surveyed some of the available IDS/IPS tools. Real time analysis of several Internet attacks was done using SNORT, "the de facto standard for intrusion detection/prevention", and Nmap in order to study malicious behavior of our network. Simulation results of Scanning attack as well as DoS attack performed on test computer have been provided. A comparative analysis of the results obtained with Snort and EagleX showed the higher efficiency of Snort.
Year
DOI
Keywords
2010
10.1145/1741906.1741914
host-based ids,available ids,intrusion detection systems,comparative analysis,nmap,intrusion prevention system ips,snort-based ids,scanning attack,dos attack,snort,general trend,network-based ids,intrusion detection system ids,real time analysis,intrusion prevention systems,ips tool,internet attack,intrusion detection,network simulator,intrusion prevention system,intrusion detection system,real time
Field
DocType
Citations 
De facto standard,Host-based intrusion detection system,Denial-of-service attack,Computer science,Computer security,Computer network,Real time analysis,Intrusion prevention system,Intrusion detection system,Operating system,The Internet
Conference
1
PageRank 
References 
Authors
0.43
6
3
Name
Order
Citations
PageRank
S. Chakrabarti110.77
M. Chakraborty2528.40
I. Mukhopadhyay320.78