Penggunaan Suricata dan Fail2ban Sebagai Intrusion Prevention System (IPS) untuk Mengatasi Serangan Jaringan dengan Notifikasi Telegram (Studi Kasus pada Disdukcapil Bengkalis)

Widodo, Reza Saputro Dwi Prastyo (2026) Penggunaan Suricata dan Fail2ban Sebagai Intrusion Prevention System (IPS) untuk Mengatasi Serangan Jaringan dengan Notifikasi Telegram (Studi Kasus pada Disdukcapil Bengkalis). Diploma thesis, Politeknik Negeri Bengkalis.

[thumbnail of Abstract] Text (Abstract)
TA-6103230041-Abstract.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (280kB)
[thumbnail of Bab 1 Pendahuluan] Text (Bab 1 Pendahuluan)
TA-6103230041-Bab 1 Pendahuluan.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (273kB)
[thumbnail of Daftar Pustaka] Text (Daftar Pustaka)
TA-6103230041-Daftar Pustaka.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (256kB)
[thumbnail of Full Text] Text (Full Text)
TA-6103230041-Full Text446.pdf - Submitted Version
Restricted to Registered users only
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (8MB) | Request a copy

Abstract

Network security at the Bengkalis Population and Civil Registration Service is crucial because this institution manages sensitive population data. Based on router system log observations, more than 19,100 dynamic IP blocking records were identified due to port scanning and SSH brute force attacks, most of which originated from foreign IP addresses. These attacks indicate continuous intrusion attempts targeting network services and causing large numbers of blacklist entries on the firewall. The current problem lies in manual monitoring and passive detection systems that delay attack mitigation. This study implemented an Intrusion Prevention System (IPS) by integrating Suricata and Fail2Ban using the Security Policy Development Life Cycle (SPDLC) method. System testing was conducted through VirtualBox simulation and physical hardware implementation. The test scenarios included 14 complex attack types such as DoS Hulk, Slowloris, Heartbleed, SSH brute force, port scanning, and Infiltration attacks. The results showed that the system successfully detected and blocked malicious IP addresses automatically in real time and generated instant notifications through a Telegram bot. This implementation is expected to improve network protection, reduce service disruption risks, and increase the efficiency of security monitoring at the Bengkalis Population and Civil Registration Service.

Item Type: Thesis (Diploma)
Uncontrolled Keywords: Fail2Ban, IPS, Network Security, SPDLC, Suricata, Telegram Bot.
Subjects: 000 – UMUM, ILMU KOMPUTER, DAN INFORMASI > 005 – Pemrograman, Perangkat Lunak > 005.8 Keamanan dan Perlindungan Sistem
Divisions: Jurusan Teknik Informatika > Diploma Tiga (D-III) Teknik Informatika > TUGAS AKHIR
Depositing User: D-III Teknik Informatika 2023 Kelas B
Date Deposited: 31 Aug 2026 01:17
Last Modified: 31 Aug 2026 01:17
URI: https://eprints.polbeng.ac.id/id/eprint/6863

Actions (login required)

View Item
View Item