TDC577: Advanced Network Security


 

Instructor:

Ehab S. Al-Shaer

Loop Office:

CTI Building, Office # 711

Loop Phone:

(312) 362 5137

FAX:

(312) 362 6116

Email:

USE the email given in class (NOT in the CS web site)

Course WWW:

http://www.mnlab.cs.depaul.edu/~ehab/Courses/TDC577/

Required Text Books: No required text book – papers and handout

 (Optional) Text Books

·         Network Intrusion Detection, Stephen Northcutt and Judy Novak, New Riders, ISBN:0-7357-1265-4

·         Internet Security and Firewalls, V. V. Preetham, NIIT Ltd, Computer Manuals, ISBN: 1931841977

·         Network Security Principles and Practices, Saadat Malik", Cisco Press ISBN: 1-58705-025-0

§         Inside Network Perimeter Security: The Definitive Guide to Firewalls, Virtual Private Networks (VPNs), Routers, and Intrusion Detection Systems,
Stephen Northcutt, Lenny Zeltser, Scott Winters, Karen Fredrick, Ronald Ritchey, New Rideres Publishing - ISBN: 0735712328

  • Corporate Computer and Network Security, Raymond R. Panko, Prentice Hall, Edition: March 2003, ISBN: 0130384712

·         Published Papers

Prerequisites:

  • TDC 463 is strictly required
  • Enthusiasm to do programmig project (C or JAva) using socket programming (TDC561 is highly recommended)
  • It is highly recommended to take CSC 390 (Foundations of Information Assurance),

Grade Distribution

  • 4 Homeworks 40% (10%, 10%, 10%, 10%)
  • Final Project but NO Paper (20%)
  • Exams (upto two) 40% -- closed book
    Exam Policy:
    NO MAKEUP EXAMS. DL Students SHOULD arrange to take the exam in the course classroom. Very exceptional cases can be discussed. In case the exam has to be taken remotely, then the exam MUST be taken in the same date and time (for the final exam location arrangements, contact DL Staff at coled@cs.depaul.edu)

Description

The course covers network infrastructure security issues, including perimeter security defense, firewalls, Virtual Private Networks, Intrusion Detection Systems, wireless security, network security auditing tools and ethical considerations. Advanced network security strategies including Defense-In-Depth, IP traceback, anomaly rules discovery in enterprise networks will be also covered..

 Topics (Lecture Handouts)

 

  • Lecture 1 Taxonomy of network attacks & Defense
  • Lecture 2 Advance Cryptography
  • Lecture 3 Review of Firewalls, IPSec and IDS
  • Lecture 4 Security Policy Management I
  • Lecture 5 Security Policy Management II
  • Lecture 6 Intrusion Detection / Prevention Systems I: Concepts  
  • Lecture 7 Intrusion Detection Systems  II: Techniques
  • Lecture 8 Worms
  • Lecture 9 Wireless Security
  • Lecture 10 Advanced Topics: IP traceback, distributed firewall policies, load balancing and collaborative firewalls, and others (Papers)
  • Final Exam (Closed Book)

Calendar of important dates

Use dlweb.cs.depaul.edu to check your GRADES