Real time intrusion detection and prevention system

55Citations
Citations of this article
64Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Major challenge for organizations in today’s era is to meet the security needs. Techniques for logging data, detecting intrusions, preventing intrusions have been evolving for years. This paper presents a solution to combine logging, and network based intrusion detection and prevention system. The system has been developed considering the Software Engineering framework of requirements analysis, design, implementation, and testing. For IPS open source tool snort is configured in inline mode, so that sensors captures packets and drops them in case of any suspicious activity is observed. Signatures for Detection and prevention help IPS in alerting the administrator and dropping the packet. Logging of dropped packets is done using Splunk. In the process it provides for cost effective, customizable and scalable solution alternative to Organizations.

Cite

CITATION STYLE

APA

Kenkre, P. S., Pai, A., & Colaco, L. (2014). Real time intrusion detection and prevention system. In Advances in Intelligent Systems and Computing (Vol. 327, pp. 405–411). Springer Verlag. https://doi.org/10.1007/978-3-319-11933-5_44

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free