File:A comparative analysis of the Snort and Suricata intrusion-detection systems (IA acomparativenaly109455480).pdf

From Wikimedia Commons, the free media repository
Jump to navigation Jump to search
Go to page
next page →
next page →
next page →

Original file(1,275 × 1,650 pixels, file size: 848 KB, MIME type: application/pdf, 69 pages)

Captions

Captions

Add a one-line explanation of what this file represents

Summary[edit]

A comparative analysis of the Snort and Suricata intrusion-detection systems   (Wikidata search (Cirrus search) Wikidata query (SPARQL)  Create new Wikidata item based on this file)
Author
Albin, Eugene
image of artwork listed in title parameter on this page
Title
A comparative analysis of the Snort and Suricata intrusion-detection systems
Publisher
Monterey, California. Naval Postgraduate School
Description

Our research focuses on comparing the performance of two open-source intrusion-detection systems, Snort and Suricata, for detecting malicious activity on computer networks. Snort, the de-facto industry standard open-source solution, is a mature product that has been available for over a decade. Suricata, released two years ago, offers a new approach to signature-based intrusion detection and takes advantage of current technology such as process multithreading to improve processing speed. We ran each product on a multi-core computer and evaluated several hours of network traffic on the NPS backbone. We evaluated the speed, memory requirements, and accuracy of the detection engines in a variety of experiments. We conclude that Suricata will be able to handle larger volumes of traffic than Snort with similar accuracy, and thus recommend it for future needs at NPS since the Snort installation is approaching its bandwidth limits.


Subjects: Intrusion detection systems (Computer security); Information technology
Language English
Publication date September 2011
Current location
IA Collections: navalpostgraduateschoollibrary; fedlink
Accession number
acomparativenaly109455480
Source
Internet Archive identifier: acomparativenaly109455480
https://archive.org/download/acomparativenaly109455480/acomparativenaly109455480.pdf
Permission
(Reusing this file)
This publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. As such, it is in the public domain, and under the provisions of Title 17, United States Code, Section 105, may not be copyrighted.

Licensing[edit]

Public domain
This work is in the public domain in the United States because it is a work prepared by an officer or employee of the United States Government as part of that person’s official duties under the terms of Title 17, Chapter 1, Section 105 of the US Code. Note: This only applies to original works of the Federal Government and not to the work of any individual U.S. state, territory, commonwealth, county, municipality, or any other subdivision. This template also does not apply to postage stamp designs published by the United States Postal Service since 1978. (See § 313.6(C)(1) of Compendium of U.S. Copyright Office Practices). It also does not apply to certain US coins; see The US Mint Terms of Use.

File history

Click on a date/time to view the file as it appeared at that time.

Date/TimeThumbnailDimensionsUserComment
current21:25, 13 July 2020Thumbnail for version as of 21:25, 13 July 20201,275 × 1,650, 69 pages (848 KB) (talk | contribs)FEDLINK - United States Federal Collection acomparativenaly109455480 (User talk:Fæ/IA books#Fork8) (batch 1993-2020 #5193)

Metadata