Thesis Details

Detekce nežádoucího provozu v lokální síti

Bachelor's Thesis Student: Šabík Erik Academic Year: 2014/2015 Supervisor: Žádník Martin, Ing., Ph.D.
English title
Detection of Malicous Traffic in Local Network
Language
Czech
Abstract

This bachelor's thesis discusses monitoring local networks using IP flows. It describes Nemeaframework which is used for building complex systems for detecting malicious traffic. Analysisof data from three different networks was performed by using this framework. Basedon this analysis a design for detection of malicious traffic in local network was created. Thedetection method monitors network traffic for suspicious communication targeting IP orURL addresses that are listed in public blacklists. The detection method is evaluated onvarious traffic samples and the results show that three analysed samples belong to networksthat are well managed and secured since the communication with the blacklisted entities israre.

Keywords

Nemea,IDS,NetFlow,IPFIX,Blacklist

Department
Degree Programme
Information Technology
Files
Status
defended, grade B
Date
18 June 2015
Reviewer
Committee
Švéda Miroslav, prof. Ing., CSc. (DIFS FIT BUT), předseda
Rychlý Marek, RNDr., Ph.D. (DIFS FIT BUT), člen
Sekanina Lukáš, prof. Ing., Ph.D. (DCSY FIT BUT), člen
Šátek Václav, Ing., Ph.D. (DITS FIT BUT), člen
Španěl Michal, Ing., Ph.D. (DCGM FIT BUT), člen
Citation
ŠABÍK, Erik. Detekce nežádoucího provozu v lokální síti. Brno, 2015. Bachelor's Thesis. Brno University of Technology, Faculty of Information Technology. 2015-06-18. Supervised by Žádník Martin. Available from: https://www.fit.vut.cz/study/thesis/16956/
BibTeX
@bachelorsthesis{FITBT16956,
    author = "Erik \v{S}ab\'{i}k",
    type = "Bachelor's thesis",
    title = "Detekce ne\v{z}\'{a}douc\'{i}ho provozu v lok\'{a}ln\'{i} s\'{i}ti",
    school = "Brno University of Technology, Faculty of Information Technology",
    year = 2015,
    location = "Brno, CZ",
    language = "czech",
    url = "https://www.fit.vut.cz/study/thesis/16956/"
}
Back to top