Pokročilé metody správy dat z IDS/IPS systémů

Abstract

This thesis solves Advanced Methods of Data Management from IDS/IPS Systems. Main goal was to evaluate the use of indexing and visualization tools when working with the output file from the Suricata system, and subsequent creation of security rules. The evaluation was carried out by selecting a total of 5 tools from which the results show that in order to catch the slightest threats, it is necessary to choose the appropriate tool with the ability to create your own charts. In conclusion, specific steps are formulated to implementation of such a solution, including the creation of security rules.

Description

Subject(s)

Suricata,IDS,Wazuh,Elastic Stack,Evebox,Firewall,Gufw,Opensnitch

Citation