Implementation of an Intrusion Detection System with Honeypot T-POT to Strengthen Network Security
摘要
Network security is critical for ensuring uninterrupted business services. As a result, many companies are continuously implementing new strategies and technologies to enhance the security of their networks, thus safeguarding their digital infrastructure and customer trust. The objective of this project is to implement an Intrusion Detection System (IDS) using the T-Pot honeypot to improve the security of the network for a contact center company in Peru. This will enable the company to identify and analyze attacks in real time, enhancing its ability to respond autonomously to potential threats and preventing unauthorized access. A proposed methodology consisted of five phases: requirements analysis, system design, system implementation, system testing, and data analysis and visualization. The results of the controlled simulations demonstrate the efficiency of the T-Pot honeypot, exhibiting a 95% effectiveness rate and a 60% reduction in malicious traffic by blocking compromised IP addresses during the simulations. In conclusion, implementing a T-Pot honeypot in the network of a contact center company in Peru facilitates early threat detection and strengthens network infrastructure security by providing valuable insights into attack patterns.