Network Security

CS ****

Course Information

Instructor: Waleed Akram Baig

Email: waleedbaig@gcu.edu.pk (Proffered Contact Method)

Office: Department Of Computer Science

Class Hours:  0800 to 0930 (Friday and Saturday)

Class Room: 3 Dept. of CS

Office Hours: Monday 2:00-3:30 PM, Saturday 11:00- 12:30 PM (or by Appointment)

Course Objective:

A. Understand the security needs of networks, users and applications.

B. Show an understanding of algorithms and procedures: encryption, keys, digital signatures and   certificates; strengths and weaknesses.

C. Identify the relevant laws which apply to the security of information systems.

D. Show an awareness of the methodologies and software tools typically used by hackers.

Text Books:

Cryptography and Network Security by Behrouz Forouzan

Network Security Essentials by William Stallings

Hacking Exposed by Stuart McClure (Reference)

Grading:

Term Work 20%

Midterm      30%

Final               50%

GC University Lahore

 

Computer Science Department

Week (Friday & Saturday)

Topics

Wk 1

INTRODUCTION : Security Goals, Security Weaknesses and vulnerability in TCP/IP (TCP; IP; ARP; DNS; ICMP; SMTP; Telnet; FTP; TFTP; Routing and Routers)

Wk2

INTRODUCTION : Attacks threatening Confidentiality, Integrity, Availability. Passive vs. Active attacks, Security Service and Mechanisms, Cryptography and Stegnography

Wk 3

Symmetric Key Cryptography, Asymmetric key Cryptography,

Introduction to Packet Sniffing,  Integer Arithmetic, Modular Arithmetic,

Wk 4

Substitution Ciphers, Transposition Ciphers, Block Ciphers

Wk 5

Data Encryption Standard (DES), Security of DES, Brute force Attack

WK 6

Electronic Code Book (ECB)mode, Cipher Block Chaining (CBC) mode

Wk 7

Primes, Euler’s Theorem, RSA Cryptosystem

Wk 8

Message Integrity, document and fingerprint, Message and Message Digest, MD5, SHA1

Wk 9

Digital signature, Attacks on Digital Signatures, Digital Certificate

Wk 10

Entity Authentication, passwords, challenge response, Biometrics

Wk 11

Symmetric key distribution, Kerberos, Legal issues: Regulation of Investigatory Powers Act, E-commerce Bill, key escrow

Wk 12

Secure Socket Layer, Hash Algorithm

Wk 13

Security at Network Layer,  IPSec

Wk 14

Security at Application Layer, PGP, Email Security

Wk 15

S/MIME, Transport Layer security

Wk 16

IDS , Firewalls, Penetration Testing