Reference no: EM132696081
IDS Introduction
This lab focuses on the exploring the practical uses of Snort on a Linux machine. You will explore the packet capture, logging and snorts IDPS functionality. Working in groups outside of class is acceptable for working through the hurdles and roadblocks that you may run into during the lab work.
Task 1: Explore Packet Capture Function (page 296, hands-on project 8-3).
Note: You may use 1 of your existing Ubuntu VMs, and use the SEED VM for the 2nd computer in this project. Where the instructions are talking about a Windows 7 machine, you can substitute for your Ubuntu VM. This setup is very similar to what you have done in an earlier lab, and just because the book instruction so that you need a partner for this, that is NOT required.
Task 2: Explore Snort Logging Function (you know your own root/admin passwords, it is not the password provided in the book) (page 298, hands-on project 8-4)
Note: The bach-newman.com website in the book does not work. Choose your own Internet domain site to use for this task.
Task 3: Create a Snort Rule (page 303, Case Project 8-2) Submit a formal lab report with your findings.
Attachment:- IDS Snort.rar