ENDÜSTRİYEL AĞLARIN GÜVENLİĞİ İÇİN UÇ SİSTEM AĞ TRAFİĞİNİN DONANIM TABANLI TOPLANMASI VE BÜTÜNLEŞİK ANALİZİ

dc.contributor.advisorULAŞ, MUSTAFA
dc.contributor.authorGÖK, GÖRKEM
dc.date.accessioned2026-08-12T10:14:17Z
dc.date.issued2025
dc.departmentFÜ, Fen Bilimleri Enstitüsü, Yazılım Mühendisliği Anabilim Dalı
dc.description.abstractEndüstriyel ağlarda artan siber tehditler, bu sistemlerin güvenliğini sağlamak adına daha ileri düzey ağ trafiği analiz yöntemlerine duyulan ihtiyacı ortaya koymaktadır. Bu çalışmada, donanım tabanlı bir sistem tasarlanarak ağ trafiğini analiz etme ve tehditleri tespit etme süreçleri incelenmiştir. Çalışmanın temel amacı, endüstriyel ağlarda gerçek zamanlı analiz yaparak ağ güvenliğini artırmak ve potansiyel saldırılara karşı etkili bir savunma mekanizması oluşturmaktır. Tez kapsamında, ağ trafiğinin özellikleri ve anormal davranışlar arasındaki ilişkiyi incelemek için imza tabanlı algoritmalar entegre edilmiş, bu sistem saldırgan trafik ve normal trafik ayrımını gerçekleştirebilmiştir. Örneklem, toplanan gerçek ağ trafiği verileri ile oluşturulmuş ve bu veriler saldırı tespiti ile normal trafik analizinde kullanılmıştır. Bu tez çalışması ile donanım tabanlı bir trafik izleme sistemi geliştirilmiş ve bu sistem, AlienVault ile GreyNoise API'lerini entegre ederek kural tabanlı karar mekanizmalara hazır hale getirilmiştir. Bulgular, geliştirilen sistemin saldırı tespitinde yüksek doğruluk oranlarına ulaştığını göstermekte, aynı zamanda paket analizi sürelerinin düşük olmasıyla gerçek zamanlı analiz gereksinimlerini karşıladığını ortaya koymaktadır. Bu çalışma, endüstriyel ağların güvenliği için donanım tabanlı yöntemlerin entegrasyonuna dair yenilikçi bir yaklaşım sunmuş, elde edilen sonuçlar, gelecekteki araştırmalar için önemli bir bilgi kaynağı oluşturmuştur.
dc.description.abstractIncreasing cybersecurity threats in industrial networks highlight the need for more advanced network traffic analysis methods to ensure the security of these systems. In this study, a hardware-based system was designed to analyze network traffic and detect potential threats. The primary objective of the study was to enhance network security in industrial environments by conducting real-time analysis and establishing an effective defense mechanism against potential attacks. Within the scope of the thesis, signature-based algorithms were integrated to examine the relationship between network traffic characteristics and anomalous behaviors. The system successfully differentiated between malicious and normal traffic. The dataset used for the study was composed of real network traffic data, which was utilized for both attack detection and normal traffic analysis. In this thesis, a hardware-based traffic monitoring system is developed and this system is made ready for rule-based decision making mechanisms by integrating AlienVault and GreyNoise APIs. The findings demonstrated that the developed system achieved high accuracy rates in threat detection while maintaining low packet analysis times, meeting the requirements for real-time analysis. This study provides an innovative approach to integrating hardware-based methods for the security of industrial networks. The results obtained offer valuable insights for future research in the domain.
dc.identifier.citationGÖK, G. (2025). Endüstriyel ağların güvenliği için uç sistem ağ trafiğinin donanım tabanlı toplanması ve bütünleşik analizi (Tez No. 926521) [Yüksek lisans tezi, Fırat Üniversitesi].
dc.identifier.urihttps://tez.yok.gov.tr/UlusalTezMerkezi/TezGoster?key=P3dtmmHrq-mzEcmCLi1CqbKAUGay-OoXb9FujlKd1cY-AOkzMs7fEIaYiATItYI0
dc.identifier.urihttps://hdl.handle.net/11508/24030
dc.identifier.yoktezid926521
dc.language.isotr
dc.publisherFırat Üniveristesi
dc.relation.publicationcategoryTez
dc.rightsinfo:eu-repo/semantics/openAccess
dc.snmzKA_TEZ_20260511
dc.subjectMühendislik Bilimleri
dc.titleENDÜSTRİYEL AĞLARIN GÜVENLİĞİ İÇİN UÇ SİSTEM AĞ TRAFİĞİNİN DONANIM TABANLI TOPLANMASI VE BÜTÜNLEŞİK ANALİZİ
dc.title.alternativeHardware based aggregation and integrated analysis of end system network traffic for the security of industrial networks
dc.typeMaster Thesis

Dosyalar