<?xml version="1.0" encoding="ISO-8859-1"?><article xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">
<front>
<journal-meta>
<journal-id>0124-8170</journal-id>
<journal-title><![CDATA[Ciencia e Ingeniería Neogranadina]]></journal-title>
<abbrev-journal-title><![CDATA[Cienc. Ing. Neogranad.]]></abbrev-journal-title>
<issn>0124-8170</issn>
<publisher>
<publisher-name><![CDATA[Universidad Militar Nueva Granada]]></publisher-name>
</publisher>
</journal-meta>
<article-meta>
<article-id>S0124-81702023000100075</article-id>
<article-id pub-id-type="doi">10.18359/rcin.6534</article-id>
<title-group>
<article-title xml:lang="es"><![CDATA[Sistemas de detección y prevención de intrusos: una taxonomía experimental basada en código abierto orientada a la industria 4.0]]></article-title>
<article-title xml:lang="en"><![CDATA[Intrusion Detection and Prevention Systems: an Open Source Based Experimental Taxonomy Oriented to Industry 4.0]]></article-title>
</title-group>
<contrib-group>
<contrib contrib-type="author">
<name>
<surname><![CDATA[Gómez Castaño]]></surname>
<given-names><![CDATA[Julio César]]></given-names>
</name>
<xref ref-type="aff" rid="Aff"/>
</contrib>
<contrib contrib-type="author">
<name>
<surname><![CDATA[Castaño Pérez]]></surname>
<given-names><![CDATA[Néstor Jaime]]></given-names>
</name>
<xref ref-type="aff" rid="Aff"/>
</contrib>
<contrib contrib-type="author">
<name>
<surname><![CDATA[Correa Ortiz]]></surname>
<given-names><![CDATA[Luis Carlos]]></given-names>
</name>
<xref ref-type="aff" rid="Aff"/>
</contrib>
</contrib-group>
<aff id="Af1">
<institution><![CDATA[,Universidad de Manizales  ]]></institution>
<addr-line><![CDATA[Manizales ]]></addr-line>
<country>Colombia</country>
</aff>
<aff id="Af2">
<institution><![CDATA[,Universidad de Manizales  ]]></institution>
<addr-line><![CDATA[Manizales ]]></addr-line>
<country>Colombia</country>
</aff>
<aff id="Af3">
<institution><![CDATA[,Universidad de Manizales  ]]></institution>
<addr-line><![CDATA[Manizales ]]></addr-line>
<country>Colombia</country>
</aff>
<pub-date pub-type="pub">
<day>00</day>
<month>06</month>
<year>2023</year>
</pub-date>
<pub-date pub-type="epub">
<day>00</day>
<month>06</month>
<year>2023</year>
</pub-date>
<volume>33</volume>
<numero>1</numero>
<fpage>75</fpage>
<lpage>86</lpage>
<copyright-statement/>
<copyright-year/>
<self-uri xlink:href="http://www.scielo.org.co/scielo.php?script=sci_arttext&amp;pid=S0124-81702023000100075&amp;lng=en&amp;nrm=iso"></self-uri><self-uri xlink:href="http://www.scielo.org.co/scielo.php?script=sci_abstract&amp;pid=S0124-81702023000100075&amp;lng=en&amp;nrm=iso"></self-uri><self-uri xlink:href="http://www.scielo.org.co/scielo.php?script=sci_pdf&amp;pid=S0124-81702023000100075&amp;lng=en&amp;nrm=iso"></self-uri><abstract abstract-type="short" xml:lang="es"><p><![CDATA[Resumen: este trabajo presenta una propuesta de taxonomía experimental basada en código abierto para los Intrusion Detection System/Intrusion Prevention System (IDS/IPS), orientada a la industria 4.0, debido a las necesidades actuales de seguridad de la información en hogares y empresas. Con la transformación digital, el crecimiento exponencial del Internet de las Cosas (IOT, por sus siglas en inglés), las conexiones a Internet y el aumento de amenazas, agravan los problemas de seguridad de los equipos, que pueden verse vulnerados por los ciberdelincuentes y ser utilizados como intermedio para atacar otros equipos de la red propia, de otras organizaciones o para formar su propio botnet con miras a ataques masivos controlados. Por ello, es necesario contar con IDS/IPS que contribuyan a mejorar su seguridad. En la taxonomía se describe la infraestructura tecnológica en hardware y software para disponer en un ambiente experimental y realizar pruebas en la implementación, administración, gestión e investigación de IDS/IPS de código abierto y comprender las reglas y las anomalías para la detección de intrusos, mediante la base de datos de firmas y la utilización algoritmos de aprendizaje automático.]]></p></abstract>
<abstract abstract-type="short" xml:lang="en"><p><![CDATA[Abstract: this paper presents a proposed open source-based experimental taxonomy for an Intrusion Detection System/Intrusion Prevention System (IDS/IPS) oriented to Industry 4.0 due to the current information security needs in homes and enterprises. With the digital transformation, the exponential growth of the Internet of Things (IOT), Internet connections, and the increase of threats, the security problems of the equipment increase, which can be vulnerable to cybercriminals and be used as an intermediary to attack other equipment of the own network, of other organizations or to form their botnet with a view to massive controlled attacks. Therefore, necessary to have IDS/IPS to help improve their security. The taxonomy describes the technological infrastructure in hardware and software to arrange in an experimental environment and perform tests in the implementation, administration, management, and research of open source IDS/IPS and understand the rules and anomalies for intrusion detection through the signature database and the use of machine learning algorithms.]]></p></abstract>
<kwd-group>
<kwd lng="es"><![CDATA[IDS]]></kwd>
<kwd lng="es"><![CDATA[IPS]]></kwd>
<kwd lng="es"><![CDATA[open source]]></kwd>
<kwd lng="es"><![CDATA[IOT]]></kwd>
<kwd lng="es"><![CDATA[Machine Learning]]></kwd>
<kwd lng="en"><![CDATA[IDS]]></kwd>
<kwd lng="en"><![CDATA[IPS]]></kwd>
<kwd lng="en"><![CDATA[open source]]></kwd>
<kwd lng="en"><![CDATA[IoT]]></kwd>
<kwd lng="en"><![CDATA[Machine Learning]]></kwd>
</kwd-group>
</article-meta>
</front><back>
<ref-list>
<ref id="B1">
<label>[1]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Ruiz]]></surname>
<given-names><![CDATA[J.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[&#8220;How to Improve the IoT Security Implementing IDS/IPS Tool Using Raspberry Pi 3B+&#8221;]]></article-title>
<source><![CDATA[International Journal of Advanced Computer Science and Applications]]></source>
<year>2019</year>
<volume>10</volume>
<numero>9</numero>
<issue>9</issue>
<page-range>399-405</page-range></nlm-citation>
</ref>
<ref id="B2">
<label>[2]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[SAR]]></surname>
<given-names><![CDATA[Shah]]></given-names>
</name>
<name>
<surname><![CDATA[I.]]></surname>
<given-names><![CDATA[Biju]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[&#8220;Performance Comparison of Intrusion Detection Systems and Application of Machine Learning to Snort System&#8221;]]></article-title>
<source><![CDATA[Future Generation Computer Systems]]></source>
<year>2018</year>
<volume>80</volume>
<page-range>157-70</page-range></nlm-citation>
</ref>
<ref id="B3">
<label>[3]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Hu]]></surname>
<given-names><![CDATA[Q]]></given-names>
</name>
<name>
<surname><![CDATA[Se-Young]]></surname>
<given-names><![CDATA[Y.]]></given-names>
</name>
<name>
<surname><![CDATA[Asghar]]></surname>
<given-names><![CDATA[MR.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[&#8220;Analysing Performance Issues of Open-source Intrusion Detection Systems in High-speed Networks&#8221;]]></article-title>
<source><![CDATA[Journal of Information Security and Applications]]></source>
<year>2020</year>
<volume>51</volume>
<page-range>102426</page-range></nlm-citation>
</ref>
<ref id="B4">
<label>[4]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Waleed]]></surname>
<given-names><![CDATA[A]]></given-names>
</name>
<name>
<surname><![CDATA[Jamali]]></surname>
<given-names><![CDATA[AF]]></given-names>
</name>
<name>
<surname><![CDATA[Masood]]></surname>
<given-names><![CDATA[A.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[&#8220;Which Opensource IDS? Snort, Suricata or Zeek&#8221;]]></article-title>
<source><![CDATA[Computer Networks]]></source>
<year>2022</year>
<volume>213</volume>
<page-range>109116</page-range></nlm-citation>
</ref>
<ref id="B5">
<label>[5]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Otoum]]></surname>
<given-names><![CDATA[Y]]></given-names>
</name>
<name>
<surname><![CDATA[Liu]]></surname>
<given-names><![CDATA[D]]></given-names>
</name>
<name>
<surname><![CDATA[Nayak]]></surname>
<given-names><![CDATA[A]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[DL-IDS: A Deep Learning-based Intrusion Detection Framework for Securing IoT]]></article-title>
<source><![CDATA[Transactions on Emerging Telecommunications Technologies]]></source>
<year>2019</year>
<volume>33</volume>
<numero>3</numero>
<issue>3</issue>
</nlm-citation>
</ref>
<ref id="B6">
<label>[6]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Chaabouni]]></surname>
<given-names><![CDATA[N.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[Network Intrusion Detection for IoT Security Based on Learning Techniques]]></article-title>
<source><![CDATA[IEEE Communications Surveys &amp; Tutorials]]></source>
<year>2019</year>
<volume>21</volume>
<numero>3</numero>
<issue>3</issue>
<page-range>2671-701</page-range></nlm-citation>
</ref>
<ref id="B7">
<label>[7]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Patil]]></surname>
<given-names><![CDATA[A. P.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[&#8220;JARVIS: An Intelligent Network Intrusion Detection and Prevention System&#8221;]]></article-title>
<source><![CDATA[Computers and Communications (Icaecc)]]></source>
<year>2022</year>
</nlm-citation>
</ref>
<ref id="B8">
<label>[8]</label><nlm-citation citation-type="">
<collab>Snort Project</collab>
<source><![CDATA[&#8220;Snort Users Manual 2.9.16&#8221;]]></source>
<year>2020</year>
</nlm-citation>
</ref>
<ref id="B9">
<label>[9]</label><nlm-citation citation-type="book">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Cañola García]]></surname>
<given-names><![CDATA[J. F.]]></given-names>
</name>
</person-group>
<source><![CDATA[&#8220;Sistema preventivo contra ataques de denegación de servicio web utilizando Deep Learning&#8221;]]></source>
<year>2020</year>
<publisher-loc><![CDATA[Medellín ]]></publisher-loc>
<publisher-name><![CDATA[Inst. Tecnol. Metro]]></publisher-name>
</nlm-citation>
</ref>
<ref id="B10">
<label>[10]</label><nlm-citation citation-type="book">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Asad]]></surname>
<given-names><![CDATA[H]]></given-names>
</name>
<name>
<surname><![CDATA[Ilir]]></surname>
<given-names><![CDATA[G]]></given-names>
</name>
</person-group>
<source><![CDATA[&#8220;Diversity in Open-Source Intrusion Detection Systems&#8221;]]></source>
<year>2018</year>
<page-range>267-81</page-range><publisher-name><![CDATA[Springer International Publishing]]></publisher-name>
</nlm-citation>
</ref>
<ref id="B11">
<label>[11]</label><nlm-citation citation-type="book">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Sharafaldin]]></surname>
<given-names><![CDATA[I]]></given-names>
</name>
<name>
<surname><![CDATA[Iman]]></surname>
</name>
<name>
<surname><![CDATA[Habibi Lashkari]]></surname>
<given-names><![CDATA[A]]></given-names>
</name>
<name>
<surname><![CDATA[Ghorbani]]></surname>
<given-names><![CDATA[A. A.]]></given-names>
</name>
</person-group>
<source><![CDATA[Toward Generating a New Intrusion Detection Dataset and Intrusion Traffic Characterization]]></source>
<year>2018</year>
<publisher-name><![CDATA[Scitepress- Science and Technology Publications]]></publisher-name>
</nlm-citation>
</ref>
<ref id="B12">
<label>[12]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Zitta]]></surname>
<given-names><![CDATA[T]]></given-names>
</name>
<name>
<surname><![CDATA[Neruda]]></surname>
<given-names><![CDATA[M]]></given-names>
</name>
<name>
<surname><![CDATA[Vojtech]]></surname>
<given-names><![CDATA[L]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[The Security of RFID Readers With IDS/IPS Solution Using Raspberry Pi]]></article-title>
<source><![CDATA[Carpathian Control Conference (ICCC)]]></source>
<year>2017</year>
</nlm-citation>
</ref>
<ref id="B13">
<label>[13]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Raza]]></surname>
<given-names><![CDATA[S. A.]]></given-names>
</name>
<name>
<surname><![CDATA[Biju]]></surname>
<given-names><![CDATA[I.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[Performance Comparison of Intrusion Detection Systems and Application of Machine Learning to Snort System]]></article-title>
<source><![CDATA[Future Generation Computer Systems]]></source>
<year>2018</year>
<volume>80</volume>
<page-range>15770</page-range></nlm-citation>
</ref>
<ref id="B14">
<label>[14]</label><nlm-citation citation-type="">
<person-group person-group-type="author">
<name>
<surname><![CDATA[I]]></surname>
<given-names><![CDATA[A. Soucase]]></given-names>
</name>
</person-group>
<source><![CDATA[Implementación de un Sistema de Prevención de Intrusiones (IPS) en un modelo de red industrial]]></source>
<year>2021</year>
</nlm-citation>
</ref>
<ref id="B15">
<label>[15]</label><nlm-citation citation-type="">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Nam]]></surname>
<given-names><![CDATA[K.]]></given-names>
</name>
<name>
<surname><![CDATA[Keecheon]]></surname>
<given-names><![CDATA[K.]]></given-names>
</name>
</person-group>
<source><![CDATA[A Study on SDN Security Enhancement Using Open-Source IDS/IPS Suricata]]></source>
<year>2018</year>
</nlm-citation>
</ref>
<ref id="B16">
<label>[16]</label><nlm-citation citation-type="">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Cruz de la Cruz]]></surname>
<given-names><![CDATA[J. E.]]></given-names>
</name>
<name>
<surname><![CDATA[Romero]]></surname>
<given-names><![CDATA[C. A.]]></given-names>
</name>
<name>
<surname><![CDATA[Delgado]]></surname>
<given-names><![CDATA[C.]]></given-names>
</name>
</person-group>
<source><![CDATA[Intrusion Detection and Prevention System for Production Supervision in Small Businesses Based on Raspberry Pi and Snort]]></source>
<year>2020</year>
</nlm-citation>
</ref>
<ref id="B17">
<label>[17]</label><nlm-citation citation-type="journal">
<person-group person-group-type="author">
<name>
<surname><![CDATA[Ahmad]]></surname>
<given-names><![CDATA[I.]]></given-names>
</name>
<name>
<surname><![CDATA[Bascheri]]></surname>
<given-names><![CDATA[M.]]></given-names>
</name>
<name>
<surname><![CDATA[Iqbal]]></surname>
<given-names><![CDATA[M. J.]]></given-names>
</name>
</person-group>
<article-title xml:lang=""><![CDATA[Performance Comparison of Support Vector Machine, Random Forest, and Extreme Learning Machine for Intrusion Detection]]></article-title>
<source><![CDATA[IEEE Access]]></source>
<year>2018</year>
<volume>6</volume>
<page-range>33789-95</page-range></nlm-citation>
</ref>
<ref id="B18">
<label>[18]</label><nlm-citation citation-type="">
<person-group person-group-type="author">
<name>
<surname><![CDATA[García]]></surname>
<given-names><![CDATA[R.]]></given-names>
</name>
</person-group>
<source><![CDATA[Las mejores rivales y alternativas a la Raspberry Pi 4]]></source>
<year>2022</year>
</nlm-citation>
</ref>
<ref id="B19">
<label>[19]</label><nlm-citation citation-type="">
<collab>Elhacker.net</collab>
<source><![CDATA[Instalar y configurar IDS/IPS Suricata en una RaspBerry Pi]]></source>
<year>2021</year>
</nlm-citation>
</ref>
<ref id="B20">
<label>[20]</label><nlm-citation citation-type="">
<collab>Tech LBT</collab>
<source><![CDATA[Configurando Suricata en Pfsense]]></source>
<year>2020</year>
</nlm-citation>
</ref>
<ref id="B21">
<label>[21]</label><nlm-citation citation-type="">
<collab>Snort</collab>
<source><![CDATA[Rule Subscriptions Power, precision, and flexibility]]></source>
<year>2022</year>
</nlm-citation>
</ref>
<ref id="B22">
<label>[22]</label><nlm-citation citation-type="">
<collab>Tech LBT</collab>
<source><![CDATA[Implementando Pfsense con Suricata]]></source>
<year>2020</year>
</nlm-citation>
</ref>
</ref-list>
</back>
</article>
