Evaluating Sniffers, IDS, and IPS: A Systematic Literature Mapping
摘要
The increasing number of cyber threats has created the necessity of using intrusion detection systems, as well as, preventing this threats. These systems enable companies to be alerted to ongoing attacks thanks to the analysis of corporate networks. In this article, a systematic mapping of the literature has been carried out with the objective of identifying the most used sniffers, IDSs and IPSs, and determining which ones offer the best results. A total of 262 articles were reviewed, of which 10 were analysed in depth. The results demonstrated that Snort is the most commonly used IDS in the literature. However, Suricata is the IDS that performs better when the network handles a higher volume of traffic.