Skripsi
SISTEM PENCEGAHAN SERANGAN USER TO ROOT (U2R) DENGAN METODE SUPPORT VECTOR MACHINE
Intrusion Prevention System (IPS) is an approach used to build a computer security system that is more advanced than the Intrusion Detection System (IDS), because this IPS can do more than just analyze traffic / logs and generate alerts. IPS responds to detected intrusion packets and will block malicious activity on the network. The dataset used is NSL - KDD which will be detected by IDS Snort so that it gets an attack pattern to perform the detection process using the support vector machine method. The results of the accuracy value of detection using a support vector machine obtained 91.75%. In this study, the IPS system will search for and block packets from Buffer Overflow attacks which have the aim of gaining root access by executing code created by the attacker, the IPS system used is the Suricata Engine which serves as IDPS and performs packet inspection on raw data using rules alert, then suricata will act as IPS and regulate which network traffic is allowed to pass through the IPS system and drop packets that have buffer overflow attacks and drop will be used only in IPS / inline mode. Keywords : Intrusion Prevention System, Buffer Overflow, Support Vector Machine, NSL – KDD, Suricata
Inventory Code | Barcode | Call Number | Location | Status |
---|---|---|---|---|
2107002716 | T39946 | T399462021 | Central Library (Referens) | Available but not for loan - Not for Loan |
No other version available