SISTEMAS DE MONITOREO ACTIVO PARA EVITAR ATAQUES A SERVICIOS DE RED EN EL HOSPITAL DR. NAPOLEÓN DÁVILA CÓRDOVA

Autores/as

Palabras clave:

Snort, Suricata, ataques en red

Resumen

Los Sistemas de monitoreo activo son la nueva tendencia en relación con la ciberseguridad, que están siendo utilizadas por las entidades privadas y públicas con la finalidad de brindar un servicio que bloquea ataques en red y optimiza las labores de registro de información. El objetivo de esta investigación es analizar la aplicación de un sistema de monitoreo activo que permita evitar ataques en el servicio de red en el Hospital Napoleón Dávila Córdova. La metodología consistió en el análisis bibliográfico de varios artículos científicos en los que se plantean las ventajas de contar con este tipo de tecnología, se diseñó el cuestionario para la entrevista al jefe del área de TIC del Hospital, para seguidamente realizar la entrevista en base al cuestionario, luego se realizó el análisis de los resultados de la entrevista. Se buscó y evaluó las posibles herramientas de monitoreo activo que se puedan aplicar. Las herramientas de seguridad aptas para la aplicación en el sistema de red dado que se conocen las características de los equipos activos, han sido Snort y Suricata, las mismas que pueden funcionar en conjunto sin ningún problema para poder detectar intrusos y anomalías en la red.

Palabras claves: Snort, Suricata, ataques en red.

Abstract

Active monitoring systems are the new trend in relation to cybersecurity, which are being used by private and public entities in order to provide a service that blocks network attacks and optimizes the work of recording information. The objective of this research is to analyze the application of an active monitoring system to prevent attacks on the network service at the Napoleón Dávila Córdova Hospital. The methodology consisted of the bibliographic analysis of several scientific articles in which the advantages of having this type of technology are presented, the questionnaire was designed for the interview with the head of the ICT area of the Hospital, and then the interview was conducted based on the questionnaire, then the analysis of the results of the interview was performed. The possible active monitoring tools that could be applied were searched for and evaluated. The security tools suitable for application in the network system, given that the characteristics of the active equipment are known, were Snort and Suricata, which can work together without any problem to detect intrusions and anomalies in the network.

Keywords: Snort, suricata, network attacks.

Información del manuscrito:
Fecha de recepción:
09 de marzo de 2023.
Fecha de aceptación: 30 de mayo de 2023.
Fecha de publicación: 01 de junio de 2023.

Descargas

Los datos de descargas todavía no están disponibles.

Citas

Arteaga, José. (2020). Evaluación de las funcionalidades de los sistemas de detección de intrusos basados en la red de plataformas Open Source utilizando la técnica de detección de anomalías. [Tesis de Maestría, Escuela Superior Politécnica del Chimborazo]. Repositorio Institucional – Escuela Superior Politécnica del Chimborazo. http://dspace.espoch.edu.ec/handle/123456789/8748

Ashok D, M. V. (2020). Comparative Study and Analysis of Network Intrusion Detection Tools. IEEE Xplore.

Barad, M. (2019), Linking Cyber Security Improvement Actions in Healthcare Systems to Their Strategic Improvement Needs, Procedia Manufacturing, Volume 39, Pages 279-286, ISSN 2351-9789, https://doi.org/10.1016/j.promfg.2020.01.335.

Bhuyan SS, K. U. (2020). Transforming Healthcare Cybersecurity from Reactive to Proactive: Current Status and Future Recommendations. SpringerLink.

Caro, R. (2020). Despliegue y explotación de herramientas Open Source para la monitorización y gestión de eventos en un entorno virtualizado.

Castellanos O, G. M. (2020). Análisis y caracterización de conjuntos de datos para detection de intrusiones. Serie Científica de la Universidad de las Ciencias Informáticas.

Coventry L, B. D. (2020). Cybersecurity in healthcare: A narrative review of trends, threats and ways forward. Maturitas.

Iona. (2017), Cyber security in healthcare networks,"E-Health and Bioengineering Conference (EHB), Sinaia, Romania, 2017, pp. 414-417, doi: 10.1109/EHB.2017.7995449.

Karim, Imdadul & Vien, Quoc-Tuan & Le, Tuan & Mapp, Glenford. (2017). A Comparative Experimental Design and Performance Analysis of Snort-Based Intrusion Detection System in Practical Computer Networks. Computers. 6. 15. 10.3390/computers6010006.

Macia-Fernández G, C. J.-C.-G.-T. (2017). Un nuevo conjunto de datos para la evaluación de IDS de red. EDITORIAL UNIVERSITAT POLITÈCNICA DE VALÈNCIA.

Maniriho, Pascal & Mahoro, Leki & Niyigaba, Ephrem & Bizimana, Zephanie & Ahmad, Tohari. (2020). Detecting Intrusions in Computer Network Traffic with Machine Learning Approaches. International Journal of Intelligent Engineering and Systems. 13. 10.22266/ijies2020.0630.39.

Perdigón LR, Orellana GA. 2021. Sistemas para la detección de intrusiones en redes de datos de instituciones de salud. Revista Cubana de Informática Médica. 2021

Rodríguez Díaz A, Vidal Ledo MJ, Cuellar Rojas A, Martínez González BD, Cabrera Arribas YM. (2017) Desarrollo de la Informatización en Hospitales. https://revinfodir.sld.cu/index.php/infodir/article/view/121

Sánchez. (2021). Modelo de red segura en un entorno distribuido para la transferencia de datos con mecanismos básicos de seguridad. https://dspace.ups.edu.ec/bitstream/123456789/20321/1/UPS-GT003222.pdf

Shah, Syed & Issac, Biju. (2018). Performance Comparison of Intrusion Detection Systems and Application of Machine Learning to Snort System. Future Generation Computer Systems. 80. 157-170. 10.1016/j.future.2017.10.016.

Syed Ali Raza Shah, Biju Issac. (2018). Performance comparison of intrusion detection systems and application of machine learning to Snort system, Future Generation Computer Systems, Volume 80, Pages 157-170, ISSN 0167-739X, https://doi.org/10.1016/j.future.2017.10.016

Uvidia Armijo, LA. (2017). Evaluación de herramientas de generación de tráfico malicioso aplicadas a una red IP virtualizada. http://hdl.handle.net/10251/91790

Zambrano (2019), Análisis de la eficiencia de los IDS open source Suricata y Snort en las PYMES. Universidad Espíritu Santo.

Descargas

Publicado

2023-06-01

Cómo citar

Cedeño, I., & Cedeño-Valarezo, L. (2023). SISTEMAS DE MONITOREO ACTIVO PARA EVITAR ATAQUES A SERVICIOS DE RED EN EL HOSPITAL DR. NAPOLEÓN DÁVILA CÓRDOVA. REVISTA CIENTÍFICA MULTIDISCIPLINARIA ARBITRADA YACHASUN - ISSN: 2697-3456, 7(12 Ed. esp.), 70–86. Recuperado a partir de https://editorialibkn.com/index.php/Yachasun/article/view/370