Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack

Intrusion detection is an important technology that can help in managing threats and vulnerabilities in this changing environment. Computer technology is more and more ubiquitous, the penetration of computer in society is a welcome step towards modernization but society needs to be better equipped w...

Full description

Bibliographic Details
Main Authors: Abidah Mat Taib, Nur Syahirah Shayuthi
Format: Article
Language:English
Published: Faculty of Computer and Mathematical Sciences, Universiti Teknologi MARA Perlis 2018-01-01
Series:Journal of Computing Research and Innovation
Subjects:
Online Access:https://crinn.conferencehunter.com/index.php/jcrinn/article/view/37
_version_ 1818418626272690176
author Abidah Mat Taib
Nur Syahirah Shayuthi
author_facet Abidah Mat Taib
Nur Syahirah Shayuthi
author_sort Abidah Mat Taib
collection DOAJ
description Intrusion detection is an important technology that can help in managing threats and vulnerabilities in this changing environment. Computer technology is more and more ubiquitous, the penetration of computer in society is a welcome step towards modernization but society needs to be better equipped with challenges associated with technology. Thus, with the help of intrusion detection system (IDS) that can be used to monitor network for any attack and intrusion, it can reduce the security issues and help people to curb with the advance threat. This project aims to provide insight to small organization, employee and student to have a secure environment in their personal computer. The objectives of this project is to set up an isolate local area network (LAN) to imitate a real network environment using Graphical Network Simulator-3 (GNS3) and to create the scenario for analyzing Snort IDS performance in Windows and Ubuntu due to flooding attack. Basically, this project uses a router in GNS3 that can act as a real router. The IDS was implemented on the PC1 while PC2 acts as an attacker that send a flooding attack to PC 1. The timer was set for 2 minutes and the performance was analyzed based on drop packet and throughput. The result shows that the performance of Snort is better in Ubuntu compared to Windows in term of its drop packet and throughput.
first_indexed 2024-12-14T12:25:40Z
format Article
id doaj.art-f18df2a41a9d48da81c7612adfe94657
institution Directory Open Access Journal
issn 2600-8793
language English
last_indexed 2024-12-14T12:25:40Z
publishDate 2018-01-01
publisher Faculty of Computer and Mathematical Sciences, Universiti Teknologi MARA Perlis
record_format Article
series Journal of Computing Research and Innovation
spelling doaj.art-f18df2a41a9d48da81c7612adfe946572022-12-21T23:01:20ZengFaculty of Computer and Mathematical Sciences, Universiti Teknologi MARA PerlisJournal of Computing Research and Innovation2600-87932018-01-0122182528Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding AttackAbidah Mat TaibNur Syahirah ShayuthiIntrusion detection is an important technology that can help in managing threats and vulnerabilities in this changing environment. Computer technology is more and more ubiquitous, the penetration of computer in society is a welcome step towards modernization but society needs to be better equipped with challenges associated with technology. Thus, with the help of intrusion detection system (IDS) that can be used to monitor network for any attack and intrusion, it can reduce the security issues and help people to curb with the advance threat. This project aims to provide insight to small organization, employee and student to have a secure environment in their personal computer. The objectives of this project is to set up an isolate local area network (LAN) to imitate a real network environment using Graphical Network Simulator-3 (GNS3) and to create the scenario for analyzing Snort IDS performance in Windows and Ubuntu due to flooding attack. Basically, this project uses a router in GNS3 that can act as a real router. The IDS was implemented on the PC1 while PC2 acts as an attacker that send a flooding attack to PC 1. The timer was set for 2 minutes and the performance was analyzed based on drop packet and throughput. The result shows that the performance of Snort is better in Ubuntu compared to Windows in term of its drop packet and throughput.https://crinn.conferencehunter.com/index.php/jcrinn/article/view/37intrusion detection systemsnortgns3performance analysisflooding attack
spellingShingle Abidah Mat Taib
Nur Syahirah Shayuthi
Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack
Journal of Computing Research and Innovation
intrusion detection system
snort
gns3
performance analysis
flooding attack
title Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack
title_full Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack
title_fullStr Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack
title_full_unstemmed Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack
title_short Intrusion Detection System (IDS) : Investigating Snort Performance in Windows and Ubuntu due to Flooding Attack
title_sort intrusion detection system ids investigating snort performance in windows and ubuntu due to flooding attack
topic intrusion detection system
snort
gns3
performance analysis
flooding attack
url https://crinn.conferencehunter.com/index.php/jcrinn/article/view/37
work_keys_str_mv AT abidahmattaib intrusiondetectionsystemidsinvestigatingsnortperformanceinwindowsandubuntuduetofloodingattack
AT nursyahirahshayuthi intrusiondetectionsystemidsinvestigatingsnortperformanceinwindowsandubuntuduetofloodingattack