Network Security: Centralized vs Decentralized approach for Zero Trust Intrusion Detection System
2025 (English)Independent thesis Basic level (professional degree), 12 credits / 18 HE credits
Student thesis
Abstract [en]
This thesis compares two different approaches to an intrusion detection system (IDS), a centralized IDS (CIDS) and decentralized IDS (DIDS) in a zero trust architecture (ZTA), with the aim of identifying the preferred approach to use in enterprise networks. The research objectives used to find the result are advantages and disadvantages, vulnerabilities and threats, performance, scalability as well as criteria for the approaches.The method being used is a matrix based literature review, which both identifies and comparesthe research objectives for each approach. Each risk and each feature has a big difference in importance. Various criteria are measured and analyzed in the study, to find a well researched outcome.The outcome finds that there is no clear answer to which approach is better. Meanwhile the analysis found that the preferred approach is based on the most relevant criteria for the type of enterprise network. This study intends to provide help for enterprise networks in selecting themost appropriate approach for an IDS [1].Furthermore, this study emphasizes the importance of organizations being well informed when deciding on a preferred approach.
Place, publisher, year, edition, pages
2025. , p. 28
Keywords [en]
IDS, Enterprise Network, Vulnerabilities, Security, Detection
National Category
Computer Engineering
Identifiers
URN: urn:nbn:se:bth-29016OAI: oai:DiVA.org:bth-29016DiVA, id: diva2:2024096
Subject / course
DV1583 Degree Project for Bachelor of Science in Engineering Computer Science
Educational program
Bachelor of Science in Engineering: Computer Security
Supervisors
Examiners
2026-01-052025-12-232026-01-05Bibliographically approved