Visualization of security vulnerabilities through intrusion detection system
Abstract
Security in computer and computer network is of great importance now-a-days. Identifying
attacks and taking appropriate measure by system administrator is of special concern. This paper
is a study and proposal of an Intrusion Detection System (IDS) for a hypothetical computer
network that provides security to Transport and Network Layer attacks in a computer network
protocol stack. The proposed system uses visualization (Graphic User Interface) to notify a
System Security Officer (SSO) of possible threats and help him/her to take appropriate action to
mitigate the effect of attack or to protect the attack before harm is being done. A detailed design
of the network IDS has been proposed and criteria for evaluating an IDS is demonstrated.
Keywords: IDS, TCP/IP, Intrusion, Distributed system, Firewall, Visualization