You are on page 1of 3

H Thng Pht Hin V Ngn Chn Xm Nhp Vi Snort v Iptables

M U
1. L DO CHN TI An ninh mng hay an ninh h thng, vn khng mi nhng lun l vn quan tm hng u ca cc quc gia, vng lnh th, cc c quan chnh ph, cc t chc, cng ty v c nhn. Nm 2010 d on s tip tc l nm nng bng v an ninh mng, vi cc loi virus mi xut hin, cc hnh thc tn cng ca hacker th cng ngy cng tinh vi, pht tp hn. Cc bin php bo mt c p dng cho h thng mng nh dng nh vn cha thc s ngn chn tt cc cuc tn cng ny. V th cn phi c cc bin php h tr khc gip bo v tt hn cho h thng mng. H thng pht hin xm nhp c a ra, n nh mt ci chung s thng bo n ngi qun tr h thng nu nh xut hin cc du hiu ca s xm nhp vo h thng mng. Nhng n cng xut hin cc bt n nh hay a ra cc cnh bo sai nn th h tip theo ca IDS c a ra l IPS. Ngoi chc nng l mt h thng cnh bo, n cn kt hp vi firewall ngn chn cc lung giao thng c du hiu bt thng trng vi du hiu xm nhp ca h thng cnh bo. Snor_inline v iptables firewall l mt gii php IPS c a ra nhm bo v tt hn cho mt h thng mng. 2. MC CH Lun vn tm hiu nhng vn c bn nht ca h thng pht hin xm nhp v h thng ngn chn xm nhp. T nhng c s tm hiu v mt h thng

IDS/IPS rt ph bin hin nay. V t nhng c s l thuyt th tin hnh xy dng v trin khai mt h thng IPS trn thc t. 3. PHM VI TI Trong phm vi kha lun ti s trnh by mt ci nhn tng quan v h thng pht hin xm nhp IDS v h thng ngn chn xm nhp IPS. Hin nay c rt nhiu h thng IPS c xy dng, ti ch tin hnh chn mt h thng tiu biu v d tip cn nht thc hin l Snort v iptables.

4. NGHA Tng cng tnh bo mt cho h thng mng, ngn chn c rt nhiu kiu tn cng n h thng mng mt cch tc thi. Thng bo n ngi qun tr c bin php x l khi c s c xy ra. Tin hnh ghi log to t liu v cc cuc tn cng. Sinh vin nm c cc kin thc v IPS s to iu kin thun li cho vic qun tr cng nh bo mt cc h thng mng trong tng lai. 5. B CC CA TI Lun vn tt nghip c chia lm 3 chng: Chng 1 Gii thiu tng quan v h thng pht hin xm nhp IDS v ngn chn xm nhp IPS.

Chng 2 Gii thiu v h thng pht hin xm nhp Snort, y l h thng pht hin rt ni ting trn th gii v firewall iptables ca h iu hnh linux (c th l h iu hnh Linux-CentOS). y l b cng c rt mnh v hon ton min ph. S kt hp gia Snort v iptables firewall xy dng mt h thng IPS hon chnh. Chng 3 Xy dng m hnh trin khai h thng ngn chn xm nhp IPS vi Snort_inline v iptables trn mt phn on mng trong thc t Phn kt lun nh gi li chc nng ca Snort v iptables c nu phn l thuyt. Trong qu trnh lm lun vn tt nghip khng trnh khi nhng thiu st. Rt mong nhn c s ng gi kin ca thy c v bn b lun vn c hon chnh hn. 6. PHNG PHP NGHIN CU

Tm hiu cc ti liu v cng ngh IDS v IPS. Nghin cu v h thng IDS/IPS Snort v iptables ca Linux Nghin cu, trin khai mt h thng IPS trn thc t. S dng Snort v iptables lm nn mt h thng IPS

You might also like