Universidad de Jaén

Menú local

Syllabus 2024-25 - 77212002 - Intrusion Detection (Detección de intrusiones)

Caption
  • Level 1: Tutorial support sessions, materials and exams in this language
  • Level 2: Tutorial support sessions, materials, exams and seminars in this language
  • Level 3: Tutorial support sessions, materials, exams, seminars and regular lectures in this language
DEGREE: Master's Degree in Computer Security (77212002)
FACULTY: SCHOOL OF ENGINEERING OF JAÉN
DEGREE: Master's Degree in Computer Engineering (74013005)
FACULTY: SCHOOL OF ENGINEERING OF JAÉN
DEGREE: Double Master's Degree in Computer Engineering and Computer Security (77612005)
FACULTY: SCHOOL OF ENGINEERING OF JAÉN
ACADEMIC YEAR: 2024-25
COURSE: Intrusion Detection
SYLLABUS
1. COURSE BASIC INFORMATION
NAME: Intrusion Detection
CODE: 77212002 (*) ACADEMIC YEAR: 2024-25
LANGUAGE: English LEVEL: 1
ECTS CREDITS: 4.0 YEAR: 1 SEMESTER: PC
2. LECTURER BASIC INFORMATION
NAME: SERRANO CHICA, JOSÉ MARÍA
DEPARTMENT: U118 - INFORMÁTICA
FIELD OF STUDY: 075 - CIENCIA DE LA COMPUTACIÓN E INT. ARTIFICIAL
OFFICE NO.: A3 - 128 E-MAIL: jschica@ujaen.es P: 953212913
WEBSITE: https://www.ujaen.es/departamentos/dinformatica/contactos/serrano-chica-jose-maria
ORCID: https://orcid.org/0000-0001-5046-0724
LANGUAGE: - LEVEL: 1
3. CONTENT DESCRIPTION

Theory program:

Lesson 1: Introduction
- Intrusion detection: Intrusions and digital attacks
- Types of digital attacks

Lesson 2: Intrusions in Computer Systems
- Types of digital attacks
- Taxonomy of attackers
- Phases in a cyber attack
- Computer audits

Lesson 3: Firewalls
- Architecture
- Policies
- Taxonomy
- Identification
- Examples
- Limitations
- Evasion

Lesson 4: Honeypots
- Taxonomy
- Ubication
- Design
- Pros and cons
- Honeynets

Lesson 5: Intrusion detection systems
- Taxonomy of intruders
- Phases in a intrusion
- Taxonomy of IDS
- IDS Requirements
- Host based IDS
- Network based IDS
- Anomaly detection
- Misuse detection
- IDS actual implementation

Lesson 6: IDS evasion
- Actual examples of IDS
- Snort
- Tipping Point
- IDS evasion
- Countermeasures
- Pentesting

Practice program:

Practice 1: Introduction to intrusion detection
Practice 2: Firewalls: Types and applications
Practice 3: Honeypots and honeynets: HoneyDrive
Practice 4: Intrusion detection systems: Introducing Snort

4. COURSE DESCRIPTION AND TEACHING METHODOLOGY

Regular (presential) sessions

Through master classes and seminars, the student will be introduced to the elementary concepts of the theory of the subject. These master classes will be interspersed with practical sessions, in order to establish the previously studied concepts on real-world models or problems. Active participation in class will be encouraged, and the development, presentation and discussion of work in class by students will be encouraged.

Online (no presential) sessions

The autonomous work of students will be encouraged through the development of theoretical and practical work on the contents of the subject. Said work may be supervised through tutoring and the use of virtual platforms (forums, email, instant messaging or videoconference...).

Students with special educational needs should contact the Student Attention Service (Servicio de Atención y Ayudas al Estudiante) in order to receive the appropriate academic support

5. ASSESSMENT METHODOLOGY

According to art. 13 of the Academic Regime and Evaluation Regulations for students of the University of Jaén, the evaluation of the subject will be global.

The final grade will be the sum of the grades obtained in each of the following parts:

Attendance in class sessions (Maximum: 1 point).

Learning results: RB10, RT2, RT4
Competencies: CB10, CB6, CTI2, CTI4

Theoretical exam (Maximum: 3 points). For the ordinary call, said exam may be replaced by the development and defense in class of a theoretical work related to the theoretical contents seen within the subject.

Learning results: RB10, RB6, RG1mSEGI, RG3mSEGI, RT2, RT4
Competencies: CB10, CB6, CG1MSEGI, CG3MSEGI, CTI2, CTI4

Practices (Maximum: 5 points). By using the tools seen in the subject, models of real cases will be evaluated and an analysis of the results will be carried out and developed.

Learning results: RB10, RB6, RE02MSEG, RG1mSEGI, RG3mSEGI, RT2, RT4
Competencies: B10, CB6, CG1MSEGI, CG3MSEGI, CTI2, CTI4, E2MSEGI

Participation in class sessions (Maximum: 1 point).

Learning results: RB10, RG1mSEGI, RG3mSEGI, RT2
Competencies: CB10, CB6, CG1MSEGI, CTI2, CTI4, E2MSEGI

To pass the subject it will be necessary to obtain a score equal to or greater than 5, as the sum of the grades obtained in all the previous sections.

In the extraordinary call, the Theory section (written exam) will be evaluated, giving the option to obtain up to 3 points. To guarantee the option to obtain the highest possible grade in said call (in accordance with the Regulation of Academic Regime and Student Evaluation of the University of Jaén, approved in Governing Council No. 33, of 11/21/2013), at said score will be added to the score obtained in the remaining evaluable sections (attendance, practices and participation) during the last ordinary call.

In the evaluation of the subject, compliance with the associated transversal competencies will be considered:

CT2: issues related to equal opportunities in the field of computer security and especially disadvantaged social groups will be evaluated, applied to our socio-economic context.
CT4: The collaborative and team work developed by the students will be evaluated, weighting it positively, and with the corresponding percentage within the activity/type of evaluation that is framed.

The student's participation in evaluation activities that together reach 30% of the grade for the subject will mean that the corresponding call has been considered exhausted for grading purposes in the minutes.

6. BOOKLIST
MAIN BOOKLIST:
  • Honeypots : a new paradigm to information security . Edition: -. Author: Joshi, R.C.. Publisher: CRC Press  (Library)
  • Intrusion detection systems with Snort : advanced IDS techniques using Snort, Apache, MySQL, PHP, and ACID . Edition: -. Author: Rehman, Rafeeq Ur. Publisher: Prentice Hall PTR  (Library)
  • Network security through data analysis : building situational awareness . Edition: -. Author: Collins, Michael. Publisher: O'Reilly  (Library)
  • Network security with NetFlow and IPFIX : big data analytics for information security . Edition: 1st edition. Author: Santos, Omar, author.. Publisher: Cisco Press  (Library)
  • state of the art in intrusion prevention and detection . Edition: -. Author: Patham, Al-Sabib Khan, ed. lit.. Publisher: Boca Raton, FL : CRC Press  (Library)
7. SUSTAINABLE DEVELOPMENT GOALS
Educación de calidad
Igualdad de género
Ciudades y comunidades sostenibles
Paz, justicia e instituciones sólidas
Alianzas para lograr objetivos
 
DETAILED INFORMATION

Goal 4. Quality Education: Ensure inclusive and equitable quality education and promote lifelong learning opportunities for all.

4.1 By 2030, ensure that all girls and boys complete free, equitable and quality primary and secondary education leading to relevant and Goal-4 effective learning outcomes

4.2 By 2030, ensure that all girls and boys have access to quality early childhood development, care and preprimary education so that they are ready for primary education

4.3 By 2030, ensure equal access for all women and men to affordable and quality technical, vocational and tertiary education, including university

4.4 By 2030, substantially increase the number of youth and adults who have relevant skills, including technical and vocational skills, for employment, decent jobs and entrepreneurship

4.5 By 2030, eliminate gender disparities in education and ensure equal access to all levels of education and vocational training for the vulnerable, including persons with disabilities, indigenous peoples and children in vulnerable situations

4.6 By 2030, ensure that all youth and a substantial proportion of adults, both men and women, achieve literacy and numeracy

4.7 By 2030, ensure that all learners acquire the knowledge and skills needed to promote sustainable development, including, among others, through education for sustainable development and sustainable lifestyles, human rights, gender equality, promotion of a culture of peace and non-violence, global citizenship and appreciation of cultural diversity and of culture’s contribution to sustainable development

4.A Build and upgrade education facilities that are child, disability and gender sensitive and provide safe, nonviolent, inclusive and effective learning environments for all

4.B By 2020, substantially expand globally the number of scholarships available to developing countries, in particular least developed countries, small island developing States and African countries, for enrolment in higher education, including vocational training and information and communications technology, technical, engineering and scientific programmes, in developed countries and other developing countries

4.C By 2030, substantially increase the supply of qualified teachers, including through international cooperation for teacher training in developing countries, especially least developed countries and small island developing states

Goal 5. Gender Equality: Achieve gender equality and empower all women and girls.

5.1 End all forms of discrimination against all women and girls everywhere

5.2 Eliminate all forms of violence against all women and girls in the public and private spheres, including trafficking and sexual and other types of exploitation

5.3 Eliminate all harmful practices, such as child, early and forced marriage and female genital mutilation

5.4 Recognize and value unpaid care and domestic work through the provision of public services, infrastructure and social protection policies and the promotion of shared responsibility within the household and the family as nationally appropriate

5.5 Ensure women’s full and effective participation and equal opportunities for leadership at all levels of decisionmaking in political, economic and public life

5.6 Ensure universal access to sexual and reproductive health and reproductive rights as agreed in accordance with the Programme of Action of the International Conference on Population and Development and the Beijing Platform for Action and the outcome documents of their review conferences

5.A Undertake reforms to give women equal rights to economic resources, as well as access to ownership and control over land and other forms of property, financial services, inheritance and natural resources, in accordance with national laws

5.B Enhance the use of enabling technology, in particular information and communications technology, to promote the empowerment of women

5.C Adopt and strengthen sound policies and enforceable legislation for the promotion of gender equality and the empowerment of all women and girls at all levels

Goal 11. Sustainable Cities and Communities: Make cities and human settlements inclusive, safe, resilient, and sustainable.

11.1 By 2030, ensure access for all to adequate, safe and affordable housing and basic services and upgrade slums

11.2 By 2030, provide access to safe, affordable, accessible and sustainable transport systems for all, improving road safety, notably by expanding public transport, with special attention to the needs of those in vulnerable situations, women, children, persons with disabilities and older persons

11.3 By 2030, enhance inclusive and sustainable urbanization and capacity for participatory, integrated and sustainable human settlement planning and management in all countries

11.4 Strengthen efforts to protect and safeguard the world’s cultural and natural heritage

11.5 By 2030, significantly reduce the number of deaths and the number of people affected and substantially decrease the direct economic losses relative to global gross domestic product caused by disasters, including water-related disasters, with a focus on protecting the poor and people in vulnerable situations

11.6 By 2030, reduce the adverse per capita environmental impact of cities, including by paying special attention to air quality and municipal and other waste management

11.7 By 2030, provide universal access to safe, inclusive and accessible, green and public spaces, in particular for women and children, older persons and persons with disabilities

11.A Support positive economic, social and environmental links between urban, peri-urban and rural areas by strengthening national and regional development planning

11.B By 2020, substantially increase the number of cities and human settlements adopting and implementing integrated policies and plans towards inclusion, resource efficiency, mitigation and adaptation to climate change, resilience to disasters, and develop and implement, in line with the Sendai Framework for Disaster Risk Reduction 2015-2030, holistic disaster risk management at all levels

11.C Support least developed countries, including through financial and technical assistance, in building sustainable and resilient buildings utilizing local materials

Goal 16. Peace, Justice, and Strong Institutions: Promote peaceful and inclusive societies for sustainable development, provide access to justice for all, and build effective, accountable, and inclusive institutions at all levels.

16.1 Significantly reduce all forms of violence and related death rates everywhere

16.2 End abuse, exploitation, trafficking and all forms of violence against and torture of children

16.3 Promote the rule of law at the national and international levels and ensure equal access to justice for all

16.4 By 2030, significantly reduce illicit financial and arms flows, strengthen the recovery and return of stolen assets and combat all forms of organized crime

16.5 Substantially reduce corruption and bribery in all their forms

16.6 Develop effective, accountable and transparent institutions at all levels

16.7 Ensure responsive, inclusive, participatory and representative decision-making at all levels

16.8 Broaden and strengthen the participation of developing countries in the institutions of global governance

16.9 By 2030, provide legal identity for all, including birth registration

16.10 Ensure public access to information and protect fundamental freedoms, in accordance with national legislation and international agreements

16.A Strengthen relevant national institutions, including through international cooperation, for building capacity at all levels, in particular in developing countries, to prevent violence and combat terrorism and crime

16.B Promote and enforce non-discriminatory laws and policies for sustainable development

Goal 17. Partnerships for the Goals: Strengthen the means of implementation and revitalize the global partnership for sustainable development.

Finance

17.1 Strengthen domestic resource mobilization, including through international support to developing countries, to improve domestic capacity for tax and other revenue collection

17.2 Developed countries to implement fully their official development assistance commitments, including the commitment by many developed countries to achieve the target of 0.7 per cent of ODA/GNI to developing countries and 0.15 to 0.20 per cent of ODA/GNI to least developed countries ODA providers are encouraged to consider setting a target to provide at least 0.20 per cent of ODA/GNI to least developed countries

17.3 Mobilize additional financial resources for developing countries from multiple sources

17.4 Assist developing countries in attaining long-term debt sustainability through coordinated policies aimed at fostering debt financing, debt relief and debt restructuring, as appropriate, and address the external debt of highly indebted poor countries to reduce debt distress

17.5 Adopt and implement investment promotion regimes for least developed countries

Technology

17.6 Enhance North-South, South-South and triangular regional and international cooperation on and access to science, technology and innovation and enhance knowledge sharing on mutually agreed terms, including through improved coordination among existing mechanisms, in particular at the United Nations level, and through a global technology facilitation mechanism

17.7 Promote the development, transfer, dissemination and diffusion of environmentally sound technologies to developing countries on favourable terms, including on concessional and preferential terms, as mutually agreed

17.8 Fully operationalize the technology bank and science, technology and innovation capacity-building mechanism for least developed countries by 2017 and enhance the use of enabling technology, in particular information and communications technology

Capacity building

17.9 Enhance international support for implementing effective and targeted capacity-building in developing countries to support national plans to implement all the sustainable development goals, including through North-South, South-South and triangular cooperation

Trade

17.10 Promote a universal, rules-based, open, non-discriminatory and equitable multilateral trading system under the World Trade Organization, including through the conclusion of negotiations under its Doha Development Agenda

17.11 Significantly increase the exports of developing countries, in particular with a view to doubling the least developed countries’ share of global exports by 2020

17.12 Realize timely implementation of duty-free and quota-free market access on a lasting basis for all least developed countries, consistent with World Trade Organization decisions, including by ensuring that preferential rules of origin applicable to imports from least developed countries are transparent and simple, and contribute to facilitating market access

Systemic issues

Policy and institutional coherence

17.13 Enhance global macroeconomic stability, including through policy coordination and policy coherence

17.14 Enhance policy coherence for sustainable development

17.15 Respect each country’s policy space and leadership to establish and implement policies for poverty eradication and sustainable development

Multi-stakeholder partnerships

17.16 Enhance the global partnership for sustainable development, complemented by multi-stakeholder partnerships that mobilize and share knowledge, expertise, technology and financial resources, to support the achievement of the sustainable development goals in all countries, in particular developing countries

17.17 Encourage and promote effective public, public-private and civil society partnerships, building on the experience and resourcing strategies of partnerships

Data, monitoring and accountability

17.18 By 2020, enhance capacity-building support to developing countries, including for least developed countries and small island developing States, to increase significantly the availability of high-quality, timely and reliable data disaggregated by income, gender, age, race, ethnicity, migratory status, disability, geographic location and other characteristics relevant in national contexts

17.19 By 2030, build on existing initiatives to develop measurements of progress on sustainable development that complement gross domestic product, and support statistical capacity-building in developing countries

 

8. VIRTUAL / CLASSROOM TEACHING SCENARIO

1) TEACHING METHODOLOGY AND TRAINING ACTIVITIES.

A1 - Expository classes in large groups. In 100% face-to-face mode (*). Class to all students in the group at the assigned time and classroom.

A2 - Small group classes. In 100% face-to-face mode (*). Class to all students in the group at the assigned time and classroom.

(*) The Center may establish a different percentage of presence depending on the number of students and classroom/laboratory capacity.

2) EVALUATION SYSTEM

The evaluation system and instruments will be the same as for the face-to-face modality, replacing the face-to-face tests in the case of groups with a remote shift in the rotation with similar tests developed through the use of the online teaching platform or others that the University of Jaén allows or enables, as long as the student's identification is guaranteed.

3) RESOURCES.

The videoconferencing systems that are available in the spaces that are enabled for teaching will be used, as well as the digital platforms available at the University of Jaén.

The recording, retransmission or reproduction of the speech, image, voice and teaching explanations by any means in face-to-face or synchronous non-face-to-face activities is expressly prohibited without explicit permission from the teaching staff teaching the activity.

9. VIRTUAL TEACHING SCENARIO

1) TEACHING METHODOLOGY AND TRAINING ACTIVITIES.

Teaching activities, when they cannot be carried out in person, will do so through synchronous and/or asynchronous activities carried out through the distance education platforms and tools (videoconference and virtual teaching) provided by the University of Jaén.

2) EVALUATION SYSTEM.

The evaluation system and instruments will be the same as for the in-person modality, replacing in-person tests with similar tests developed through the use of the online teaching platform or others that the University allows or enables, as long as the student's identification is guaranteed.

3) RESOURCES.

The videoconferencing systems that are available in the spaces that are enabled for teaching will be used, as well as the digital platforms available at the University of Jaén.

The recording, retransmission or reproduction of your speech, image, voice and teaching explanations by any means in face-to-face or synchronous non-face-to-face activities is expressly prohibited without explicit permission from the teaching staff teaching the activity.

DATA PROTECTION CLAUSE (on line exams)

Institution in charge of data processing: Universidad de Jaén, Campus Las Lagunillas, s/n, 23071 Jaén

Data Protection Delegate: dpo@ujaen.es

Purpose: In accordance with the Universities Law and other national and regional regulations in force, carrying out exams and assessment tests corresponding to the courses students are registered in. In order to avoid frauds while sitting the exam, the exam will be answered using a videoconference system, being able the academic staff of the University of Jaén to compare and contrast the image of the person who is answering the exam with the student's photographic files. Likewise, in order to provide the exam with evidential content for revisions or claims, in accordance with current regulation frameworks, the exam will be recorded and stored.

Legitimacy: compliance with legal obligations (Universities Law) and other national and regional regulations currently in force.

Addressees: service providers who are the owners of the platforms where the exams are carried out and with whom the University of Jaén has signed the corresponding data access contracts.

Storage periods: those established in current in force regulations. In the specific case of exam videoconference recordings, not before the examination records and transcripts are closed or the exam can still be reviewed or challenged.

Rights: you can exercise your right of access, amendment, cancellation, opposition, suppression, limitation and portability by sending a letter to the postal or electronic address indicated above. In the event that you consider that your rights have been violated, you may submit a complaint to the Andalusian Council for Transparency and Data Protection www.ctpdandalucia.es

CLASS RECORDING CLAUSE PERSONAL DATA PROTECTION

Person in charge: Universidad de Jaén, Paraje Las Lagunillas, s/n; Tel.953 212121; www.ujaen.es

Data protection delegate (DPO): TELEFÓNICA, S.A.U. ; Email: dpo@ujaen.es

Procedure aim: To manage proper recordings of teaching sessions with the aim of facilitating learning process under a multimodal and/or online teaching

Period for record storage: Images will be kept during legal term according to regulations in force

Legitimacy: Data will be managed according to legal regulations (Organic Law 6/2001, December 21, on Universities) and given consent provided by selecting corresponding box in legal admission documents

Data recipients (transfers or assignments): Any person allowed to get access to every teaching modality

Rights: You may exercise your rights of access, rectification, cancellation, portability, limitation of processing, deletion or, where appropriate, opposition. To exercise these rights, you must submit a written request to the Information, Registration and Electronic Administration Service of the University of Jaen at the address above, or by e-mail to the address above. You must specify which of these rights you are requesting to be satisfied and, at the same time, you must attach a photocopy of your ID card or equivalent identification document. In case you act through a representative, legal or voluntary, you must also provide a document that proves this representation and identification. Likewise, if you consider that your right to personal data protection has been violated, you may file a complaint with the Andalusian Data Protection and Transparency Council www.ctpdandalucia.es