Analysis of Snort Rules to Prevent Synflood Attacks on Network Security
Анализ правил Snort для предотвращения SYN Flood-атак на сетевую безопасность
2019-08-19
SCID: 54.1/yx7ypt5z
Discuss with AI
SYN Flood attacksSnort rulesTCP/IP vulnerabilitiesdenial-of-service attacksnetwork security
Figures from the paper
Abstract (AI)
Snort rules are a form of the database whose attack pattern is applied to a Snort server to filter out the types of attacks, so that the type of attack detected can be isolated, the Snort rule database must be updated so that if there are new types of attack patterns it can be found by Snort rules.This analysis will provide input to update regularly so that if a new type of attack is detected and can be detected.Snort rules to prevent SYN Flood attacks, the type of denial of service that has been formulated using loopholes when connecting to TCP / IP is done.In network security analysis it is very important to formulate an attack pattern that will attack the network so that it can be overcome by Snort rules.Maintaining a secure network from interference can be overcome by Snort rules.Analysis of Snort's rules is to prevent SYN Flood attacks on network security and makes it easier for administrators to report the types of attacks that enter Snort rules and make it easier to make policies improve based on the logs in Snort rules.
Key Findings
1
Analyzing Snort rules helps administrators classify incoming attacks and use Snort logs to improve network security policies.
2
Regularly updating the Snort rule database is necessary to detect newly emerging attack patterns.
3
Snort rules can identify and filter SYN Flood attacks by matching attack patterns exploiting TCP/IP connection behavior.
4
Snort-based monitoring can support network protection by isolating detected denial-of-service attacks and facilitating security reporting.
Research Object
Snort rules for detecting SYN Flood attacks in network security
Research Subject
The effectiveness and updating of Snort attack-pattern rules for detecting and preventing SYN Flood denial-of-service attacks
Publication Details
Publication Date
2019-08-19
Journal
Publisher
ISSN
Open access PDF
Access Type
Author Information
Download PDF
Subscribe to digest