← Back to Technical work
Cybersecurity · Network Defense
Snort Intrusion Detection Lab
A controlled Linux lab for writing Snort rules, generating safe test traffic, and investigating alerts with Wireshark.

BRIEF
A controlled environment for monitoring, detecting, and investigating selected network activity.
PRACTICAL WORK
Configured Snort detection rules for ICMP, TCP, and port-scan activity. Generated test traffic in the lab to validate alerts, then inspected packet captures in Wireshark.
FOCUS
Intrusion detection · Traffic analysis · Defensive monitoring · Technical documentation.
SAFE SCOPE
Testing was conducted in a controlled lab environment.