Reference no: EM133932405
Network & Information Security
Assessment:
Overview
Introduction
This group assessment, consisting of two parts, Project Report and Project Demonstration.
This group project requires teams of 3-4 students to design, implement, and demonstrate an advanced network security solution. You will focus on enhancing your pfSense firewall with a robust Intrusion Detection and Prevention System (IDPS) using Snort.
The group leader will submit the Project Report to the LMS. The rest of the group members should submit the "Individual participation form".
The group will prepare a face-to-face presentation to demonstrate the system's defenses. The group leader will also submit the Project PowerPoint presentation to the LMS. Get top-notch online assignment help.
Project Report (Group)
Advanced IDPS Configuration (Building on Labs 5-7):
Extend your existing pfSense setup from previous labs with advanced Snort configurations.
Develop custom Snort rules tailored to detect specific threats relevant to your virtual network environment, including emerging threats such as IoT-based attacks or DDoS attacks prevalent in 2025.
Implement and configure Snort templates to enhance detection capabilities.
Document your network topology, including all virtual machines and network configurations.
Create detailed documentation of your custom Snort rules, explaining their purpose and functionality.
Provide screenshots of your experiments.
IDPS Testing and Validation:
Develop comprehensive test cases to validate the effectiveness of your Snort rules.
Simulate various attack scenarios, including complex multi-stage attacks or lateral movement within the virtual network, to trigger your Snort rules and demonstrate the IDPS's detection and prevention capabilities.
Capture and analyze Snort logs and alerts to evaluate the performance of your IDPS.
Document the test cases, attack simulations, and analysis of Snort logs and alerts.
Provide screenshots of your experiments.
Project Report and Documentation:
Compile a comprehensive report that includes:
Network topology and configurations.
Detailed documentation of custom Snort rules and templates.
Test cases, attack simulations, and analysis of Snort logs and alerts.
Analysis of the effectiveness of the implemented security measures.
Discussion of challenges encountered and solutions implemented.
Screenshots of your experiments.
Ensure the report is well-organized, clearly written, and professionally formatted.
Project Demonstration (Group)
Face-to-Face Presentation and Demonstration:
Prepare a face-to-face presentation to demonstrate the working defenses of your system.
Showcase the functionality of your custom Snort rules and the IDPS's ability to detect and prevent emerging and complex attack scenarios.
Be prepared to answer questions from the instructor and classmates.
Each member of the group must actively participate in the presentation and demonstration.