Security and Computer Networks
|Hour/sem||Lectures||Sem. Exercises||Lab. exercises||Comp. exercises||Other|
|Guarantee:||Švéda Miroslav, prof. Ing., CSc., DIFS|
|Lecturer:||Drahanský Martin, doc. Ing., Dipl.-Ing., Ph.D., DITS|
Očenášek Pavel, Ing., Ph.D., DIFS
Švéda Miroslav, prof. Ing., CSc., DIFS
|Instructor:||Očenášek Pavel, Ing., Ph.D., DIFS|
Trchalík Roman, Mgr., Ph.D., DIFS
|Faculty:||Faculty of Information Technology BUT|
|Department:||Department of Information Systems FIT BUT|
The goal of this course is to inform students about basic principles of network and systems security and relevant protocols and standards. Students are learned to design and manage security technologies.
Secure Communication on the L2 Layer. Certificates and Digital Signature. Attacks in Computer Networks. Security Protocols, their Analysis, Verification and Design. Application of Security Protocols. Security on the L3 Layer. IPsec and VPN. Security of Network Services. IDS and IPS Systems. Security of Wireless Networks. Security of Sensor Networks.
|Knowledge and skills required for the course:|
- Basic skills of operation systems Unix, Windows
- Ability to read study texts in English (standards, RFC documents).
- Architecture of computer networks (ISO/OSI, TCP/IP).
- Overview of link layer protocols and network layer protocols.
|Learning outcomes and competences:|
Student are able to configure secure communication between computers. They have an overview of authentication principles and secure network services and they are able to manage them: SSH, VPN, email services, etc. They have overview of security technologies used in wireless and sensor networks. Students are able to design and implement secure communication. Students are able to read standards and use them for project implementation.
|Syllabus of lectures:|
- Introduction. Overview of computer security.
- Security of L2 layer (802.1x, PAP, CHAP).
- Certificates. Digital signature (PKI, TKPI). Certification authority. Authentication and authorization in computer networks AAA.
- Attacks in computer networks.
- Security protocols, their analysis and verification.
- Design of security protocols and their application. Payment protocols.
- Security of L3 layer. IPsec and VPN.
- Security of network services. Secure transport (SSL, TLS). Security on the application layer.
- Firewalls. IDS and IPS systems.
- Security of wireless and mobile networks. WEP, WPA.
- Security of sensor networks. ZigBee.
- Security in practice.
- Modern trends of networks security. Course summary.
|Syllabus of laboratory exercises:|
- Practical analysis of security protocol.
- Practical implementation of secure communication.
- Administration of secure communication (SSH, stunel, pgp). Creation of VPN connections. Secure connections testing.
|Syllabus - others, projects and individual work of students:|
Practical analysis of security protocol. Practical implementation and administration of secure communication.|
- Stallings, W.: Cryptography and network security: principles and
practice. 2nd ed., Prentice Hall, Upper Saddle River, 1999, ISBN
- Schneider, S.A., Ryan, P.Y.A.: Modelling and Analysis of Security Protocols. Addison Wesley, Boston, 2000, ISBN 0-201-67471-8.
- Bishop, M.: Computer security: Art & Science. Addison-Wesley, Boston, 2003, ISBN 0-201-44099-7.
- Anderson, Ross J.: Security Engineering: A Guide to Building
Dependable Distributed Systems. John Wiley & Sons Inc, 2001, ISBN
- Menezes, A. J., Oorschot, P.C. van, Vanstone, S.A.: Handbook
of Applied Cryptography. CRC Press, 1996, ISBN 0-8493-8523-7,
- Tanenbaum, A.S.: Computer Networks. Fourth Edition, Prentice Hall, 2003, ISBN 0-13-066102-3.
- Standards IETF RFC.
- Lecture notes in electronic form.
Mid-term exam and project realization.
Mid-term exam and project realization.
Students need to earn at least a half of all points during the semester.