Reference no: EM133868376 , Length: word count:2500
Network & Information Security
Assessment - Introduction
This group assessment, consisting of two parts, Project Report and Project Demonstration.
This group project requires teams of 3-4 students to design, implement, and demonstrate an advanced network security solution. You will focus on enhancing your pfSense firewall with a robust Intrusion Detection and Prevention System (IDPS) using Snort.
The group leader will submit the Project Report to the LMS. The rest of the group members should submit the "Individual participation form".
The group will prepare a face-to-face presentation to demonstrate the system's defenses. The group leader will also submit the Project PowerPoint presentation to the LMS. The rest of the group members should submit the "Individual participation form".
Project Report (Group)
Advanced IDPS Configuration (Building on Labs 5-7):
Extend your existing pfSense setup from previous labs with advanced Snort configurations.
Develop custom Snort rules tailored to detect specific threats relevant to your virtual network environment.
Implement and configure Snort templates to enhance detection capabilities.
Document your network topology, including all virtual machines and network configurations.
Create detailed documentation of your custom Snort rules, explaining their purpose and functionality.
Provide screenshots of your experiments.
IDPS Testing and Validation:
Develop comprehensive test cases to validate the effectiveness of your Snort rules.
Simulate various attack scenarios to trigger your Snort rules and demonstrate the IDPS's detection and prevention capabilities.
Capture and analyze Snort logs and alerts to evaluate the performance of your IDPS.
Document the test cases, attack simulations, and analysis of Snort logs and alerts.
Provide screenshots of your experiments.
Project Report and Documentation:
Compile a comprehensive report that includes:
Network topology and configurations.
Detailed documentation of custom Snort rules and templates.
Test cases, attack simulations, and analysis of Snort logs and alerts.
Analysis of the effectiveness of the implemented security measures.
Discussion of challenges encountered and solutions implemented.
Screenshots of your experiments.
Ensure the report is well-organized, clearly written, and professionally formatted.
Project Demonstration (Group)
Face-to-Face Presentation and Demonstration:
Prepare a face-to-face presentation to demonstrate the working defenses of your system.
Showcase the functionality of your custom Snort rules and the IDPS's ability to detect and prevent attacks.
Be prepared to answer questions from the instructor and classmates.
Each member of the group must actively participate in the presentation and demonstration.