{"id":176,"date":"2018-07-12T06:12:08","date_gmt":"2018-07-12T06:12:08","guid":{"rendered":"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/?post_type=chapter&#038;p=176"},"modified":"2018-07-31T08:37:38","modified_gmt":"2018-07-31T08:37:38","slug":"security-in-networks","status":"publish","type":"chapter","link":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/chapter\/security-in-networks\/","title":{"rendered":"Security in Networks"},"content":{"raw":"<strong>How attackers attack Network?<\/strong>\r\n<ul>\r\n \t<li>Pinging,Port scanning<\/li>\r\n \t<li>Social enginnering<\/li>\r\n \t<li>Intelligence<\/li>\r\n \t<li>Operating system and application fingerprinting<\/li>\r\n \t<li>Bulletin board and charts<\/li>\r\n \t<li>Availability of documentation<\/li>\r\n<\/ul>\r\n<strong>Pinging<\/strong>\r\n<ul>\r\n \t<li>Determine if a host is aliveSocial Engineering<\/li>\r\n \t<li>Social skill and personal interaction is used to get security relevant information and thereafter gets something that permits attack.<\/li>\r\n \t<li>The attacker impersonates someone from inside the organization.<\/li>\r\n \t<li>The victim helped attacker, does not report incident.<\/li>\r\n<\/ul>\r\n<strong>Intelligence<\/strong>\r\n<ul>\r\n \t<li>Gather bits of information from various sources, put together.<\/li>\r\n \t<li style=\"text-align: justify\">\u201cdumpster diving\u201d \u2013 looking through items that is discarded in rubbish bins or recycling boxes.<\/li>\r\n \t<li style=\"text-align: justify\">- attacker may get network diagrams, printouts of security device configurations, system designs and source code.<\/li>\r\n<\/ul>\r\n<strong>Operating system and Application Fingerprinting<\/strong>\r\n<ul>\r\n \t<li>Attacker needs to know<\/li>\r\n \t<li>- which commercial server application is running<\/li>\r\n \t<li>- what version<\/li>\r\n \t<li>- which is the underlying operating system and its version<\/li>\r\n \t<li>The network protocols are standard and vendor independent.<\/li>\r\n \t<li style=\"text-align: justify\">For TCP session, sender and receiver coordinate for sequence number. Some implementation respond with a given sequence number, other respond with the number one greater, some respond with unrelated number..<\/li>\r\n \t<li style=\"text-align: justify\">Each vendor\u2019s code is implemented independently; there are variations in interpretation and behavior.<\/li>\r\n \t<li>For TCP session, sender and receiver coordinate\u00a0 for sequence number. Some implementation\u00a0 \u00a0respond with a given sequence number, other\u00a0 respond with the number one greater, some<\/li>\r\n \t<li>New version implement a new feature but old version will reject.<\/li>\r\n \t<li>These peculiarities are called operating system or application fingerprint, can mark the manufacturer and version.<\/li>\r\n \t<li>nmap program to perform an OS fingerprint.nmap \u2013O 192.168.1.1<\/li>\r\n \t<li>The attacker might use a Telnet application to send meaningless messages to another application. Ports such as 80(HTTP),25(SMTP),110(POP), 21(FTP) may respond :Server:Netscape-Commerce\/1.12 Your browser sent a non HTTP compliant message\u00a0 Or\u00a0 Microsoft ESMTP Mail service. Version:5.0.2195.3779\u00a0 Reply tells attacker which\u00a0 application<span style=\"text-align: initial;font-size: 1em\"> and version are running.<\/span><\/li>\r\n \t<li>Discover information related to environment of an organization viz. Internet, intranet, remote access and extranet.<\/li>\r\n \t<li>Includes information about domain name, users and groups, network blocks, network services and applications, system architecture, intrusion detection systems, specific IP addresses, access control mechanisms.<\/li>\r\n \t<li>For websites, Open source footprinting involves \u2013 searching through DNS tables, scanning certain IP addresses for open ports, making \u201cwhois\u201d requests.<\/li>\r\n \t<li>Check the HTML source code of the web site to look for links, comments, meta tags etc.<\/li>\r\n<\/ul>\r\n<strong>Open source footprinting<\/strong>\r\n<ul>\r\n \t<li>A web page<\/li>\r\n \t<li>Yahoo or other directories<\/li>\r\n \t<li>Multiple search engines,<\/li>\r\n \t<li>Use advanced search(AltaVista \u2013 where reverse links can be searched to vulnerable sites)<\/li>\r\n \t<li>Dumpster diving<\/li>\r\n \t<li>Physical access(false ID, unauthorized access)<\/li>\r\n \t<li>Whois query<\/li>\r\n<\/ul>\r\nIdentify names of the organization and related network. Domain names represent the company\u2019s presence on the internet.\r\n\r\n&nbsp;\r\n\r\n<strong>Types of <\/strong>whois<strong> query<\/strong>\r\n<ul>\r\n \t<li>Registrar \u2013 Displays specific registrar information and associated whois servers<\/li>\r\n \t<li>Organizational \u2013 displays all information related to a particular organization<\/li>\r\n \t<li>Domain \u2013 Displays all information related to particular domain<\/li>\r\n \t<li>Network \u2013 Displays all information related to a particular network or a single IP address<\/li>\r\n \t<li>Point of contact(POC) \u2013 Displays all information related to a specific person, the administrative contacts.<\/li>\r\n<\/ul>\r\n<strong>NSLOOKUP(DNS query)<\/strong>\r\n<ul>\r\n \t<li>Nslookup queries DNS information for host name resolution.<\/li>\r\n \t<li style=\"text-align: justify\">Nslookup shows the host name and IP address of the DNS server that is configured for the local system,<span style=\"text-align: initial;font-size: 1em\"> and then display a command prompt for further query. Public Database Security<\/span><\/li>\r\n \t<li style=\"text-align: justify\">All information obtained are at public disclosure.Regional Internet registeries<span style=\"text-align: initial;font-size: 1em\">(RIR) Records<\/span><\/li>\r\n \t<li style=\"text-align: justify\">E-mail addresses listed on RIR records should end with a domain different from your organization\u2019s name.<\/li>\r\n \t<li style=\"text-align: justify\">RIRs allow use of P.O. box addresses for individual and organizational contacts, personal contact information is not exposed to potential intruders.<\/li>\r\n<\/ul>\r\n<strong>Bulletin boards and chats<\/strong>\r\n<ul>\r\n \t<li style=\"text-align: justify\">Attackers post their exploits and techniques, read what others have done and search for additional information on systems, applications or sites.Internet<span style=\"text-align: initial;font-size: 1em\"> is open for all, no guarantee of information being reliable or accurate.<\/span><\/li>\r\n<\/ul>\r\n<strong>Availability of documentation<\/strong>\r\n<ul>\r\n \t<li>Vendors themselves distribute information useful to an attacker.<\/li>\r\n \t<li>Application vendors investigate a Microsoft product through a resource kit produced by Microsoft.<\/li>\r\n<\/ul>\r\n<strong>Threats in Transit : Eavesdropping and Wiretapping<\/strong>\r\n\r\n&nbsp;\r\n\r\n<strong>Cable-inductance threats<\/strong>\r\n<ul>\r\n \t<li style=\"text-align: justify\">All signals in an Ethernet or other LAN are available on the cable for anyone to intercept.<\/li>\r\n \t<li style=\"text-align: justify\">Ordinary wire emit radiation. By a process called inductance an intruder can tap a wire and read radiated signals without making physical contact with cable.<\/li>\r\n \t<li style=\"text-align: justify\">The equipment needed for picking up signals is inexpensive and easy to obtain.<\/li>\r\n \t<li style=\"text-align: justify\">Intruder must be close to cable.<\/li>\r\n \t<li style=\"text-align: justify\">If attacker cannot take advantage of inductance, the attacker intercept a cable by direct cut.<\/li>\r\n \t<li style=\"text-align: justify\">As a part of repair, attacker attaches a secondary cable and receives copy of all signals along the primary cable.<\/li>\r\n \t<li style=\"text-align: justify\">The attacker carefully exposes some outer conductor, connect to it, carefully exposes some inner conductor and connect to it. Both operations alter the resistance, called impedance of the cable.<\/li>\r\n<\/ul>\r\n<strong>Software based packet sniffer<\/strong>\r\n<ul>\r\n \t<li>A sniffer is a piece of software that captures the traffic flowing into and out of a computer attached to a network.<\/li>\r\n \t<li style=\"text-align: justify\">Networking is done through Ethernet. The Ethernet protocol, broadcasts packet to all hosts on the network, packet header contains the name of the machine \u2013 receiver of the packet. Others ignore the packet.<\/li>\r\n \t<li style=\"text-align: justify\">Network Interface card configured in promiscuous mode, accepts all packets. Aim is to grab username and password travelling across network. Known as passive attack.Passive sniffing attack<\/li>\r\n \t<li>By compromising the physical security<\/li>\r\n \t<li>Using a Trojan Horse<\/li>\r\n \t<li>Use switched ethernet.<\/li>\r\n \t<li style=\"text-align: justify\">Switch does not broadcast all information to all systems on the LAN. Regulates the flow of data between its ports by actively monitoring the MAC address on each port.Active sniffing The sniffers inject traffic into LAN. Example \u2013 ARP spoofing, MAC flooding<\/li>\r\n<\/ul>\r\n<strong>MAC flooding<\/strong>\r\n<ul>\r\n \t<li style=\"text-align: justify\">In a switched network, ARP table ensures IP addresses are mapped to MAC addresses.<\/li>\r\n \t<li style=\"text-align: justify\">Change default directed output of switch to broadcast method.<\/li>\r\n \t<li style=\"text-align: justify\">Flood the network with too many frames that the switch cannot do IP-MAC address mapping and have to do broadcasting.<\/li>\r\n<\/ul>\r\n<strong>ARP flooding<\/strong>\r\n<ul>\r\n \t<li>ARP finds MAC adress from the given IP of machine.<\/li>\r\n \t<li>The MAC address to IP address table is stored locally on each computer.<\/li>\r\n \t<li style=\"text-align: justify\">ARP spoofing involves changing the MAC to IP address entries, causing traffic to be redirected from legitimate system to an unauthorized system of the attacker\u2019s choice.<\/li>\r\n<\/ul>\r\n<strong>Impersonation<\/strong>\r\n<ul>\r\n \t<li>Impersonate another person or process<\/li>\r\n \t<li>Guess the identity and authentication details of the target.<\/li>\r\n \t<li>Pick up identity and authentication details of the target from a previous communication or from wiretapping<\/li>\r\n<\/ul>\r\n<img class=\"size-full wp-image-177 aligncenter\" src=\"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103.png\" alt=\"\" width=\"462\" height=\"656\" \/>\r\n\r\n<img class=\"size-full wp-image-178 aligncenter\" src=\"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104.png\" alt=\"\" width=\"410\" height=\"649\" \/>\r\n\r\n<img class=\"size-full wp-image-179 aligncenter\" src=\"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105.png\" alt=\"\" width=\"527\" height=\"652\" \/>\r\n<div class=\"textLayer\">\r\n<div><\/div>\r\n<div><strong>suggested Reading:<\/strong><\/div>\r\n<\/div>\r\n<div><\/div>\r\n<div class=\"textLayer\">\r\n<div>1.Cryptography and Network Security Principles and Practice by William Stallings,sixthEdition,PEARSON.<\/div>\r\n<div>2.Security in Computing by Charles Pfleeger &amp; Shari Lawrence Pfleeger, fourthEdition, PEARSON.<\/div>\r\n<div>3.Network Security by Charlie Kaufman, Radia Perlman, Mike Speciner, secondEdition, PHI.<\/div>\r\n<div>4.The Complete Reference\u2013Network Security by Roberta Bragg, Mark Rhodes-Ousley &amp; Keith Strassberg, Tata McGraw Hill<\/div>\r\n<div>5.Network Security Bible by Eric Cole, Ronald Krutz, James Conley, Wiley<\/div>\r\n<div>6.Hacking 6 Exposedby Stuart McClure, Joel Scambray &amp; George Kurtz , TataMcGraw Hill .<\/div>\r\n<div>7.www.snort.org<\/div>\r\n<div>8.https:\/\/nmap.org<\/div>\r\n<\/div>\r\n<div class=\"annotationLayer\"><\/div>","rendered":"<p><strong>How attackers attack Network?<\/strong><\/p>\n<ul>\n<li>Pinging,Port scanning<\/li>\n<li>Social enginnering<\/li>\n<li>Intelligence<\/li>\n<li>Operating system and application fingerprinting<\/li>\n<li>Bulletin board and charts<\/li>\n<li>Availability of documentation<\/li>\n<\/ul>\n<p><strong>Pinging<\/strong><\/p>\n<ul>\n<li>Determine if a host is aliveSocial Engineering<\/li>\n<li>Social skill and personal interaction is used to get security relevant information and thereafter gets something that permits attack.<\/li>\n<li>The attacker impersonates someone from inside the organization.<\/li>\n<li>The victim helped attacker, does not report incident.<\/li>\n<\/ul>\n<p><strong>Intelligence<\/strong><\/p>\n<ul>\n<li>Gather bits of information from various sources, put together.<\/li>\n<li style=\"text-align: justify\">\u201cdumpster diving\u201d \u2013 looking through items that is discarded in rubbish bins or recycling boxes.<\/li>\n<li style=\"text-align: justify\">&#8211; attacker may get network diagrams, printouts of security device configurations, system designs and source code.<\/li>\n<\/ul>\n<p><strong>Operating system and Application Fingerprinting<\/strong><\/p>\n<ul>\n<li>Attacker needs to know<\/li>\n<li>&#8211; which commercial server application is running<\/li>\n<li>&#8211; what version<\/li>\n<li>&#8211; which is the underlying operating system and its version<\/li>\n<li>The network protocols are standard and vendor independent.<\/li>\n<li style=\"text-align: justify\">For TCP session, sender and receiver coordinate for sequence number. Some implementation respond with a given sequence number, other respond with the number one greater, some respond with unrelated number..<\/li>\n<li style=\"text-align: justify\">Each vendor\u2019s code is implemented independently; there are variations in interpretation and behavior.<\/li>\n<li>For TCP session, sender and receiver coordinate\u00a0 for sequence number. Some implementation\u00a0 \u00a0respond with a given sequence number, other\u00a0 respond with the number one greater, some<\/li>\n<li>New version implement a new feature but old version will reject.<\/li>\n<li>These peculiarities are called operating system or application fingerprint, can mark the manufacturer and version.<\/li>\n<li>nmap program to perform an OS fingerprint.nmap \u2013O 192.168.1.1<\/li>\n<li>The attacker might use a Telnet application to send meaningless messages to another application. Ports such as 80(HTTP),25(SMTP),110(POP), 21(FTP) may respond :Server:Netscape-Commerce\/1.12 Your browser sent a non HTTP compliant message\u00a0 Or\u00a0 Microsoft ESMTP Mail service. Version:5.0.2195.3779\u00a0 Reply tells attacker which\u00a0 application<span style=\"text-align: initial;font-size: 1em\"> and version are running.<\/span><\/li>\n<li>Discover information related to environment of an organization viz. Internet, intranet, remote access and extranet.<\/li>\n<li>Includes information about domain name, users and groups, network blocks, network services and applications, system architecture, intrusion detection systems, specific IP addresses, access control mechanisms.<\/li>\n<li>For websites, Open source footprinting involves \u2013 searching through DNS tables, scanning certain IP addresses for open ports, making \u201cwhois\u201d requests.<\/li>\n<li>Check the HTML source code of the web site to look for links, comments, meta tags etc.<\/li>\n<\/ul>\n<p><strong>Open source footprinting<\/strong><\/p>\n<ul>\n<li>A web page<\/li>\n<li>Yahoo or other directories<\/li>\n<li>Multiple search engines,<\/li>\n<li>Use advanced search(AltaVista \u2013 where reverse links can be searched to vulnerable sites)<\/li>\n<li>Dumpster diving<\/li>\n<li>Physical access(false ID, unauthorized access)<\/li>\n<li>Whois query<\/li>\n<\/ul>\n<p>Identify names of the organization and related network. Domain names represent the company\u2019s presence on the internet.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Types of <\/strong>whois<strong> query<\/strong><\/p>\n<ul>\n<li>Registrar \u2013 Displays specific registrar information and associated whois servers<\/li>\n<li>Organizational \u2013 displays all information related to a particular organization<\/li>\n<li>Domain \u2013 Displays all information related to particular domain<\/li>\n<li>Network \u2013 Displays all information related to a particular network or a single IP address<\/li>\n<li>Point of contact(POC) \u2013 Displays all information related to a specific person, the administrative contacts.<\/li>\n<\/ul>\n<p><strong>NSLOOKUP(DNS query)<\/strong><\/p>\n<ul>\n<li>Nslookup queries DNS information for host name resolution.<\/li>\n<li style=\"text-align: justify\">Nslookup shows the host name and IP address of the DNS server that is configured for the local system,<span style=\"text-align: initial;font-size: 1em\"> and then display a command prompt for further query. Public Database Security<\/span><\/li>\n<li style=\"text-align: justify\">All information obtained are at public disclosure.Regional Internet registeries<span style=\"text-align: initial;font-size: 1em\">(RIR) Records<\/span><\/li>\n<li style=\"text-align: justify\">E-mail addresses listed on RIR records should end with a domain different from your organization\u2019s name.<\/li>\n<li style=\"text-align: justify\">RIRs allow use of P.O. box addresses for individual and organizational contacts, personal contact information is not exposed to potential intruders.<\/li>\n<\/ul>\n<p><strong>Bulletin boards and chats<\/strong><\/p>\n<ul>\n<li style=\"text-align: justify\">Attackers post their exploits and techniques, read what others have done and search for additional information on systems, applications or sites.Internet<span style=\"text-align: initial;font-size: 1em\"> is open for all, no guarantee of information being reliable or accurate.<\/span><\/li>\n<\/ul>\n<p><strong>Availability of documentation<\/strong><\/p>\n<ul>\n<li>Vendors themselves distribute information useful to an attacker.<\/li>\n<li>Application vendors investigate a Microsoft product through a resource kit produced by Microsoft.<\/li>\n<\/ul>\n<p><strong>Threats in Transit : Eavesdropping and Wiretapping<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><strong>Cable-inductance threats<\/strong><\/p>\n<ul>\n<li style=\"text-align: justify\">All signals in an Ethernet or other LAN are available on the cable for anyone to intercept.<\/li>\n<li style=\"text-align: justify\">Ordinary wire emit radiation. By a process called inductance an intruder can tap a wire and read radiated signals without making physical contact with cable.<\/li>\n<li style=\"text-align: justify\">The equipment needed for picking up signals is inexpensive and easy to obtain.<\/li>\n<li style=\"text-align: justify\">Intruder must be close to cable.<\/li>\n<li style=\"text-align: justify\">If attacker cannot take advantage of inductance, the attacker intercept a cable by direct cut.<\/li>\n<li style=\"text-align: justify\">As a part of repair, attacker attaches a secondary cable and receives copy of all signals along the primary cable.<\/li>\n<li style=\"text-align: justify\">The attacker carefully exposes some outer conductor, connect to it, carefully exposes some inner conductor and connect to it. Both operations alter the resistance, called impedance of the cable.<\/li>\n<\/ul>\n<p><strong>Software based packet sniffer<\/strong><\/p>\n<ul>\n<li>A sniffer is a piece of software that captures the traffic flowing into and out of a computer attached to a network.<\/li>\n<li style=\"text-align: justify\">Networking is done through Ethernet. The Ethernet protocol, broadcasts packet to all hosts on the network, packet header contains the name of the machine \u2013 receiver of the packet. Others ignore the packet.<\/li>\n<li style=\"text-align: justify\">Network Interface card configured in promiscuous mode, accepts all packets. Aim is to grab username and password travelling across network. Known as passive attack.Passive sniffing attack<\/li>\n<li>By compromising the physical security<\/li>\n<li>Using a Trojan Horse<\/li>\n<li>Use switched ethernet.<\/li>\n<li style=\"text-align: justify\">Switch does not broadcast all information to all systems on the LAN. Regulates the flow of data between its ports by actively monitoring the MAC address on each port.Active sniffing The sniffers inject traffic into LAN. Example \u2013 ARP spoofing, MAC flooding<\/li>\n<\/ul>\n<p><strong>MAC flooding<\/strong><\/p>\n<ul>\n<li style=\"text-align: justify\">In a switched network, ARP table ensures IP addresses are mapped to MAC addresses.<\/li>\n<li style=\"text-align: justify\">Change default directed output of switch to broadcast method.<\/li>\n<li style=\"text-align: justify\">Flood the network with too many frames that the switch cannot do IP-MAC address mapping and have to do broadcasting.<\/li>\n<\/ul>\n<p><strong>ARP flooding<\/strong><\/p>\n<ul>\n<li>ARP finds MAC adress from the given IP of machine.<\/li>\n<li>The MAC address to IP address table is stored locally on each computer.<\/li>\n<li style=\"text-align: justify\">ARP spoofing involves changing the MAC to IP address entries, causing traffic to be redirected from legitimate system to an unauthorized system of the attacker\u2019s choice.<\/li>\n<\/ul>\n<p><strong>Impersonation<\/strong><\/p>\n<ul>\n<li>Impersonate another person or process<\/li>\n<li>Guess the identity and authentication details of the target.<\/li>\n<li>Pick up identity and authentication details of the target from a previous communication or from wiretapping<\/li>\n<\/ul>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-177 aligncenter\" src=\"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103.png\" alt=\"\" width=\"462\" height=\"656\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103.png 462w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103-211x300.png 211w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103-65x92.png 65w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103-225x319.png 225w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-103-350x497.png 350w\" sizes=\"auto, (max-width: 462px) 100vw, 462px\" \/><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-178 aligncenter\" src=\"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104.png\" alt=\"\" width=\"410\" height=\"649\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104.png 410w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104-190x300.png 190w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104-65x103.png 65w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104-225x356.png 225w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-104-350x554.png 350w\" sizes=\"auto, (max-width: 410px) 100vw, 410px\" \/><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-179 aligncenter\" src=\"http:\/\/itp4.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105.png\" alt=\"\" width=\"527\" height=\"652\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105.png 527w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105-242x300.png 242w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105-65x80.png 65w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105-225x278.png 225w, https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-content\/uploads\/sites\/25\/2018\/07\/Untitled-105-350x433.png 350w\" sizes=\"auto, (max-width: 527px) 100vw, 527px\" \/><\/p>\n<div class=\"textLayer\">\n<div><\/div>\n<div><strong>suggested Reading:<\/strong><\/div>\n<\/div>\n<div><\/div>\n<div class=\"textLayer\">\n<div>1.Cryptography and Network Security Principles and Practice by William Stallings,sixthEdition,PEARSON.<\/div>\n<div>2.Security in Computing by Charles Pfleeger &amp; Shari Lawrence Pfleeger, fourthEdition, PEARSON.<\/div>\n<div>3.Network Security by Charlie Kaufman, Radia Perlman, Mike Speciner, secondEdition, PHI.<\/div>\n<div>4.The Complete Reference\u2013Network Security by Roberta Bragg, Mark Rhodes-Ousley &amp; Keith Strassberg, Tata McGraw Hill<\/div>\n<div>5.Network Security Bible by Eric Cole, Ronald Krutz, James Conley, Wiley<\/div>\n<div>6.Hacking 6 Exposedby Stuart McClure, Joel Scambray &amp; George Kurtz , TataMcGraw Hill .<\/div>\n<div>7.www.snort.org<\/div>\n<div>8.https:\/\/nmap.org<\/div>\n<\/div>\n<div class=\"annotationLayer\"><\/div>\n","protected":false},"author":4,"menu_order":20,"template":"","meta":{"pb_show_title":"on","pb_short_title":"","pb_subtitle":"","pb_authors":["miss-hiteishi-diwanji"],"pb_section_license":""},"chapter-type":[],"contributor":[58],"license":[],"class_list":["post-176","chapter","type-chapter","status-publish","hentry","contributor-miss-hiteishi-diwanji"],"part":3,"_links":{"self":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/chapters\/176","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/chapters"}],"about":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/wp\/v2\/types\/chapter"}],"author":[{"embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/wp\/v2\/users\/4"}],"version-history":[{"count":8,"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/chapters\/176\/revisions"}],"predecessor-version":[{"id":394,"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/chapters\/176\/revisions\/394"}],"part":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/parts\/3"}],"metadata":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/chapters\/176\/metadata\/"}],"wp:attachment":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/wp\/v2\/media?parent=176"}],"wp:term":[{"taxonomy":"chapter-type","embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/pressbooks\/v2\/chapter-type?post=176"},{"taxonomy":"contributor","embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/wp\/v2\/contributor?post=176"},{"taxonomy":"license","embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/itp4\/wp-json\/wp\/v2\/license?post=176"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}