IMPLEMENTATION INTRUSION DETECTION PREVENTION SYSTEM AS A SECURITY SYSTEM USING SNORT AND IPTABLES BASED ON LINUX

Main Article Content

Ruri Hartika Zain
Yelmi Rahmawati

Abstract

The development of computer networks continues, in terms of scalability, number of nodes, and technology. Computers connected to the network have the potential to experience disturbances or attacks. Therefore network security is very important in a computer network system to avoid attacks/disturbances and protect computer networks. Intrusion Detection System (IDS) with Snort implemented in the operating system linux can perform DoS attack monitoring (Denial of Service) and Port Scanning. Snort mode IDS will give alert regularly real-time according to rules Snort which is set in local.rules. IPTables as tools IPS will stop the attack/interference with rules IPTables applied. In this study, system testing was carried out Snort IDS, IPTables and service quality testing server. The results of the Snort IDS test can provide an alert that there is disturbances/attack real-time. IPS test results can overcome incoming attack/disturbances by blocking the intruder's IP address. Testing the quality of server service after implementing IDPS, the index value obtained was 3.75. Previously, server service quality had an index value of 2. This means that IDPS is able to overcome attacks/disturbances that enter the network.

Article Details

Section
Articles