Intrusion Detection and Prevention System (IDPS) with Snort
Elliot Whitney
Co-Presenters: Individual Presentation
College: The Dorothy and George Hennings College of Science, Mathematics and Technology
Major: Computer Science
Faculty Research Mentor: Jing-Chiou Liou
Abstract:
As part of the critical functions offered by network security, Intrusion Detection and Prevention Systems (IDPS) serve as a safeguard against malicious activities and unauthorized access to networks. Snort, a widely used open-source IDPS, plays a pivotal role in real-time traffic analysis and packet logging for detecting and preventing threats. This study will focus on Snort as a tool for implementing and analyzing IDPS in various network environments. Understanding Snort’s rule sets, architecture, and operational modes is crucial to configuring, monitoring, and analyzing network traffic. Additionally, this study will explore how to simulate attacks, analyze network behavior, and generate actionable alerts, with potential assistance from AI to enhance detection capabilities and response effectiveness.