Syllabus
Introduction – Overview of computer networks and network security, Introduction to Application Layer, Transport Layer, Network and Link Layers.
Weaknesses, vulnerabilities, and attacks against the above protocols – hijacking, spoofing and DoS attacks. Attacks using above protocols: simple, amplified, and distributed DoS attacks.
OSI Security Architecture, security attacks, security services, CIA Triad, Encryption, and message confidentiality,
Application layer security – Goals, TLS – Objectives, protocol, working and features, PGP: Overview, objective, working, features, and limitations. Network Layer Security – IPSec: Introduction, Tunnel and Transfer Modes, IPSec Authentication Header, Encapsulating Security Header and Payload, IPSec Key Exchange and VPNs. Firewalls, Intrusion Detection Systems, and Intrusion Prevention Systems. Snort, Signature and Anomaly based detection, IPtables, Honeypots, and Honeynet.
Attacks against transport layer protocols: UDP flooding, TCP spoofing, TCP connection hijacking, TCP SYN flood. Attacks against vulnerabilities in ARP. BGP security, Secure Network Communication: SCP, SSH, TLS 1.2, STARTTLS, and Secure HTTP; Attacks on SSL/TLS: SSL stripping, Drown and Poodle attack.
AI-based Intrusion Detection Systems, Traffic Analysis using AI, Adversarial Machine Learning for Network Security