Please use this identifier to cite or link to this item: https://repository.sustech.edu/handle/123456789/19375
Full metadata record
DC FieldValueLanguage
dc.contributor.authorIbrahim, Eman Ahmed Alnour-
dc.contributor.authorMohmed, Hadeel Siragaldeen Albdri-
dc.contributor.authorAbusham, Joudy Omer Abdallah-
dc.contributor.authorAli, Marwa Ezuldeen Mohmed-
dc.date.accessioned2017-12-12T13:03:49Z-
dc.date.available2017-12-12T13:03:49Z-
dc.date.issued2017-10-01-
dc.identifier.citationIbrahim, Eman Ahmed Alnour.EVALUATION PERFORMANCE OF SNORT NETWORK INTRUSION DETECTION SYSTEM/Eman Ahmed Alnour Ibrahim...{etal};Ahmed Abdalla.-Khartoum : Sudan University of Science and Technology, College of Engineering,2017.-59p. :ill;28cm.- Bachelors search.en_US
dc.identifier.urihttp://repository.sustech.edu/handle/123456789/19375-
dc.descriptionBachelors searchen_US
dc.description.abstractWith the thriving technology and the great increase in the usage of computer networks, the risk of having these network to be under attacks have been increased. Number of techniques have been created and designed to help in detecting such attacks. One common technique is the use of Network Intrusion Detection System NIDS. Today, number of open sources and commercial Intrusion Detection Systems are available to match enterprises requirements but the performance of these Intrusion Detection Systems is still the main concern. In this research ,an open source snort was implemented on Linux platform used for testing, analyzing packets attacks in Defense advanced Research Project Agency 1999 and comparing the result of it with ground truth table to evaluate the accuracy and performance of snort according to different metrics (true positive ,false positive, false negative, true negative, speed of snort to capture packet and analyze).The precision of the snort became high because so many rules defined (true positive ) ,and still group of undefined rules false positive and false negative that effect the precision .The rustle of the obtained performance was medium ratio. Therefore , snort can deals better under that performance rate in offline traffic, if the rate becomes higher the performance will be reduceden_US
dc.description.sponsorshipSudan University of Science and Technologyen_US
dc.language.isoenen_US
dc.publisherSudan University of Science and Technologyen_US
dc.subjectSNORT NETWORK INTRUSION DETECTION SYSTEMen_US
dc.subjectNETWORK INTRUSIONen_US
dc.subjectDETECTION SYSTEMen_US
dc.titleEVALUATION PERFORMANCE OF SNORT NETWORK INTRUSION DETECTION SYSTEMen_US
dc.typeThesisen_US
Appears in Collections:Bachelor of Engineering

Files in This Item:
File Description SizeFormat 
EVALUATION PERFORMANCE OF SNORT NETWORK.pdfSearch1.58 MBAdobe PDFView/Open


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.