p-Index From 2021 - 2026
6.576
P-Index
This Author published in this journals
All Journal International Journal of Electrical and Computer Engineering IAES International Journal of Artificial Intelligence (IJ-AI) Seminar Nasional Aplikasi Teknologi Informasi (SNATI) TEKNIK JURNAL SISTEM INFORMASI BISNIS Jurnal Simetris Bulletin of Electrical Engineering and Informatics Jurnal Teknologi Informasi dan Ilmu Komputer Seminar Nasional Informatika (SEMNASIF) Sisforma: Journal of Information Systems JURNAL TEKNIK INFORMATIKA DAN SISTEM INFORMASI Jurnal Sisfokom (Sistem Informasi dan Komputer) MATRIK : Jurnal Manajemen, Teknik Informatika, dan Rekayasa Komputer Krea-TIF: Jurnal Teknik Informatika Indonesian Journal of Computing and Modeling The IJICS (International Journal of Informatics and Computer Science) JIPI (Jurnal Ilmiah Penelitian dan Pembelajaran Informatika) Building of Informatics, Technology and Science Progresif: Jurnal Ilmiah Komputer Jurnal JTIK (Jurnal Teknologi Informasi dan Komunikasi) International Journal of Engineering, Technology and Natural Sciences (IJETS) Aiti: Jurnal Teknologi Informasi MEANS (Media Informasi Analisa dan Sistem) Jurasik (Jurnal Riset Sistem Informasi dan Teknik Informatika) Jurnal Teknik Informatika (JUTIF) Journal of Information Technology Ampera Jurnal Saintekom : Sains, Teknologi, Komputer dan Manajemen Jurnal Sosial dan Sains Magistrorum et Scholarium: Jurnal Pengabdian Masyarakat IT-Explore: Jurnal Penerapan Teknologi Informasi dan Komunikasi Jurnal Pendidikan Teknologi Informasi (JUKANTI) INOVTEK Polbeng - Seri Informatika JuTISI (Jurnal Teknik Informatika dan Sistem Informasi)
Claim Missing Document
Check
Articles

Perancangan Dan Implementasi Security Information and Event Management (SIEM) pada Layanan Virtual Server Heluka, Huelilik Dyan; Sulistyo, Wiwin
Progresif: Jurnal Ilmiah Komputer Vol 19, No 2: Agustus 2023
Publisher : STMIK Banjarbaru

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35889/progresif.v19i2.1353

Abstract

Devices accessible through the Internet have provided incredible convenience and connectivity in everyday life. However, the reality is that the device is also an attractive target for bad actors. Security threats such as malware attacks, computer virus attacks, and other cyberattacks can easily attack devices connected to the Internet. To overcome these challenges, effective and sophisticated solutions are needed. SIEM is a security platform that combines security information management (SIM) and security event management technology. (SEM). SIEM Works by collecting logs from various sources and then normalizing and aggregating log event data that is then processed using contextual parameters contained in SIEM collected from various internal and external endpoint devices such as Operating systems and network devices. The research is aimed at implementing the Wazuh SIEM with the primary objective of centralizing logs to quickly detect attacks on VPS, especially web application attacks and SSH protocol attacks. With the final results of SIEM implementation, log data from each application can be decentralized and visualized in a dashboard, and SIEM is able to detect attacks on previously undetected web applications and SSH protocols.Keyword: Security Operation Center; SIEM; Open Source; Wazuh; AbstrakPerangkat yang dapat diakses melalui jaringan internet telah memberikan kenyamanan dan konektivitas yang luar biasa dalam kehidupan sehari-hari. Namun, kenyataannya adalah bahwa perangkat tersebut juga menjadi sasaran menarik bagi para aktor jahat. Ancaman keamanan seperti serangan malware, serangan virus komputer, dan serangan Siber lainnya dapat dengan mudah menyerang perangkat yang terhubung ke internet. Untuk mengatasi tantangan ini, diperlukan solusi yang efektif dan canggih. Security Information and Event Management (SIEM) merupakan platform keamanan yang menggabungkan teknologi Security Information Management (SIM) dan Security Event Management (SEM). SIEM Bekerja dengan cara mengumpulkan log dari berbagai sumber kemudian menormalisasi dan mengagregasi data peristiwa log yang kemudian diproses menggunakan parameter kontekstual yang terdapat di dalam SIEM, yang dikumpulkan dari berbagai sumber internal dan eksternal perangkat Endpoint seperti Sistem Operasi, kontainer, dan perangkat jaringan. Penelitian ini bertujuan untuk mengimplementasikan SIEM Wazuh dengan tujuan utama yaitu melakukan sentralisasi log untuk mendeteksi dengan cepat serangan pada VPS, terutama pada serangan aplikasi web dan serangan pada protokol SSH. Dengan hasil akhir implementasi SIEM, data log dari setiap aplikasi dapat disentralisasi dan divisualisasikan dalam sebuah dashboard, serta SIEM mampu mendeteksi serangan pada aplikasi web dan protokol SSH yang sebelumnya tidak terdeteksi.Kata kunci: Security Operation Center; SIEM; Open Source; Wazuh 
Model Internet of thing untuk Pemantauan Pasien Isolasi Mandiri Menggunakan WEMOS D1R32 Hallatu, Axl Denis B; Sulistyo, Wiwin
Progresif: Jurnal Ilmiah Komputer Vol 19, No 2: Agustus 2023
Publisher : STMIK Banjarbaru

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35889/progresif.v19i2.1357

Abstract

Medical staff have the potential to contract the disease while treating Covid 19 patients in self-isolation status. This research aims to develop an Internet of Things model that can be used to monitor self-isolated patients, to reduce the risk of infection by medical personnel from certain diseases experienced by patients with Isolation status. The tool developed combines the function of WEMOS D1 R32 as a microcontroller equipped with ESP32 for sending data via the internet, the MLX90614 sensor for reading temperature and humidity, the hc-sr04 sensor is used so that the patient does not come into direct contact with the tool at a distance of less than 9 cm and the BUZZER is used as alarm if the patient's temperature is more than 38 Celsius, then to find out the patient's temperature, use the 16x2 12C LCD which has been installed on the device and also the blynk application which can be accessed via cellphone or web. WEMOS D1 R32 is connected to the MLX90614 sensor to find out the temperature of the patient who is in isolation independent. Obtained from the tests carried out each tool works well according to its function, and during testing the average tool delay from the sensor to blynk 1,870.Keywords: Wemos D1 R32; Blynk; Self isolation; Covid-19; mlx90614 AbstrakPetugas medis berpotensi tertular penyakit ketika sedang merawat pasien Covid 19 berstatus Isolasi Mandiri. Penelitian ini bertujuan mengembangkan model Internet of Thing yang dapat digunakan untuk memantau pasien isolasi mandiri, untuk mengurangi risiko tertularnya tenaga medis dari penyakit tertentu yang alami oleh pasien berstatu Isolasi. Alat yang dikembangkan menggabungkan fungsi WEMOS D1 R32 sebagai mikrokontroler yang dilengkapi dengan ESP32 untuk pengiriman data melalui internet, sensor MLX90614 untuk membaca suhu dan kelembaban,sensor hc-sr04 digunakan agar pasien tidak berkontak langsung dengan alat dengan jarak kurang dari 9 cm dan BUZZER digunakan sebagai alarm jika suhu pasien lebih dari 38 celcius ,kemudian untuk mengetahui suhu pasien digunakan LCD 16x2 12C yang telah dipasangkan pada alat dan juga aplikasi blynk yang dapat diakses melalui handphone maupun web.WEMOS D1 R32 dihubungkan dengan sensor MLX90614 untuk mengetahui suhu pasien yang sedang melakukan isolasi mandiri. Didapatkan dari tes yang dilakukan setiap alat bekerja dengan baik sesuai fungsinya, dan pada saat pengujian alat rata-rata delay dari sensor ke blynk 1.870.Kata Kunci: Wemos D1 R32; Blynk; Isolasi mandiri; Covid-19; Mlx90614
ANALISIS PENGARUH IPV4 DAN IPV6 PADA QUEUING MECHANISM DALAM MANAJEMEN JARINGAN Isa Mahendra Kusuma Rachman, Bhaskara; Sulistyo, Wiwin
IT Explore: Jurnal Penerapan Teknologi Informasi dan Komunikasi Vol 3 No 3 (2024): IT-Explore Oktober 2024
Publisher : Fakultas Teknologi Informasi, Universitas Kristen Satya Wacana

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.24246/itexplore.v3i3.2024.pp359-367

Abstract

Abstrak – Dalam sebuah jaringan diperlukan sebuah alamat dalam bentuk IP Address. Penelitian ini akan membandingkan kedua versi IP yang ada yaitu IPv4 dan IPv6 pada mekanisme antrian sehingga dapat memberi gambaran apa pengaruh performa pada manajemen jaringan secara spesifik yaitu pada bandwidth, latency, dan packet loss. Mekanisme Antrian dalam jaringan merupakan proses bagaimana paket-paket data yang akan dikirim dari asal paket seperti server menuju ke klien yang meminta, metode antrian Class Based Weighted Fair Queuing (CBWFQ) merupakan metode Mekanisme antrian yang menggunakan metode Class Based Queuing untuk memilah paket data yang sudah ditentukan user seperti protokol TCP dan ICMP serta Weighted Fair Queuing sebagai penjadwal pengiriman paket data. Proses untuk melakukan analisis menggunakan Network Development Life Cycle (NDLC) yaitu melakuan analisis, desain, simulasi prototype, implementasi, monitoring, dan manajemen pada sebuah jaringan. Pada IPv4 bandwidth yang digunakan lebih tinggi daripada IPv6, tetapi IPv6 lebih konsisten pada penggunaan bandwidth.Sementara pada latency perbedaannya hampir satu milisecond dan tidak didapati terdapatnya packet loss. Penggunaan rata-rata bandwidth pada IPv4 adalah 94.315 Mbits/sec sementara pada IPv6 adalah 92.9625 Mbits/sec, rata-rata latency IPv4 adalah 11.65 milisecond sementara pada IPv6 adalah 12.4 milisecond. Penelitian ini diharapkan dapat menjadi sebuah acuan dalam transisi perubahan dari IPv4 menjadi IPv6 dalam jaringan yang telah diatur dengan Mekanisme Antrian.
Implementasi port knocking dinamis berbasis waktu pada router untuk pengamanan akses SSH junga, David; Sulistyo, Wiwin
IT Explore: Jurnal Penerapan Teknologi Informasi dan Komunikasi Vol 4 No 1 (2025): IT-Explore Februari 2025
Publisher : Fakultas Teknologi Informasi, Universitas Kristen Satya Wacana

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.24246/itexplore.v4i1.2025.pp106-115

Abstract

This research proposes a time-based dynamic port knocking technique on Mikrotik routers to enhance SSH access security. The system uses an algorithm for port calculation that changes according to the server’s time, requiring a different knocking sequence for each access session. The technique involves three consecutive knocking stages, where each stage must be passed in order for SSH access to be granted. The results show that this method is effective as a two-factor authentication mechanism, limiting access only to clients who understand the port calculation algorithm. Moreover, this system helps prevent brute-force attacks more efficiently by changing the port every minute, making it more difficult for unauthorized parties to launch an attack. Therefore, this method offers a more dynamic, adaptive, and flexible SSH security solution that can effectively address modern cybersecurity threats.
Model Pemantauan Keamanan Jaringan Melalui Aplikasi Telegram Dengan Snort Natanael Christianto; Wiwin Sulistyo
Jurnal Teknik Informatika dan Sistem Informasi Vol 7 No 3 (2021): JuTISI
Publisher : Maranatha University Press

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.28932/jutisi.v7i3.4088

Abstract

Network security is the main of the development of today's technology. The ease in accessing the internet also requires protection on users is required. The ease of accessing the internet by people can also cause the occurrence of cyber crime. Cyber crime can be done by all internet users, without exception, to earn a profit. Security monitoring system server through the app messenger Telegram can help administrators in the work because always be on standby in front of the server computer. Notice of Snort as IDS via Telegram also quicked and can be accepted anywhere. In taking action when the server something happened not too late. Target cyber crime also can attack anyone without exception. A system should be a strength, with the protection of a secure network that will be difficult to hack by hackers. The server is the main target in the conduct of cyber crime. The use of the server must maintain to secure all the data is not misused by persons who are not responsible. Each server is a system that should be an administrator as a guard on duty watching and taking action when something happens on the server. To monitor a server, an administrator should always standby in front of the server computer so as not to late take action when the server is about to happen something.
Simulasi traffic dan performa jaringan SDN menggunakan ONOS Controller dan standar TIPHON Agus, Yulius Manahil Hendrawan; Sulistyo, Wiwin
IT Explore: Jurnal Penerapan Teknologi Informasi dan Komunikasi Vol 4 No 2 (2025): IT-Explore Juni 2025
Publisher : Fakultas Teknologi Informasi, Universitas Kristen Satya Wacana

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.24246/itexplore.v4i2.2025.pp196-210

Abstract

The increasing number of devices connected to the network and the rapid growth of data traffic have posed challenges in managing conventional networks. Traditional networks often experience inefficiencies in handling high traffic loads due to static traffic management, leading to congestion in some network paths while others remain underutilized. Software-Defined Networking (SDN) has emerged as an innovative solution by separating the control plane and data plane, enabling more flexible, centralized, and programmable network management. This study evaluates the performance of OpenFlow-based SDN using the ONOS Controller and compares it with conventional home Wi-Fi networks based on the TIPHON standard. The simulation was conducted using Virtual Machines (VMWare) and Mininet, which were connected to the ONOS Controller via the OpenFlow protocol, while the conventional network testing was performed using the Command Prompt. The testing included three data transmission scenarios: 1 host to 1 host, 2 hosts to 1 host, and 2 hosts to 2 hosts simultaneously, with measured parameters including delay and packet loss. The results indicate that in the 1 host to 1 host scenario, both SDN and conventional networks had a delay of less than 150 ms and 0% packet loss. However, in the 2 hosts to 2 hosts scenario, the conventional network experienced an increase in delay and packet loss of up to 17%, whereas SDN remained stable with a delay below 150 ms and 0% packet loss. This confirms SDN's superior efficiency in handling high network traffic through more dynamic traffic distribution. Additionally, this study confirms that SDN's centralized control allows for more adaptive traffic management, reduces congestion, and improves overall network stability. These research demonstrate SDN's efficiency in handling high traffic loads, making it a superior solution for modern network demands.
Implementasi Iptables Firewall dan Intrusion Detection System Untuk Mencegah Serangan DDoS Pada Linux Server Widianto, Theodorus Kristian; Sulistyo, Wiwin
MEANS (Media Informasi Analisa dan Sistem) Volume 6 Nomor 1
Publisher : LPPM UNIKA Santo Thomas Medan

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (662.655 KB) | DOI: 10.54367/means.v6i1.1231

Abstract

Security on computer networks is currently a matter that must be considered especially for internet users because many risks must be borne if this is negligent of attention. Data theft, system destruction, and so on are threats to users, especially on the server-side. DDoS is a method of attack that is quite popular and is often used to bring down servers. This method runs by consuming resources on the server computer so that it can no longer serve requests from the user side. With this problem, security is needed to prevent the DDoS attack, one of which is using iptables that has been provided by Linux. Implementing iptables can prevent or stop external DDoS attacks aimed at the server.
Model Keamanan Jaringan Menggunakan Firewall Port Blocking Sartomo, Sartomo; Sulistyo, Wiwin
Krea-TIF: Jurnal Teknik Informatika Vol 10 No 1 (2022)
Publisher : Fakultas Teknik dan Sains, Universitas Ibn Khaldun Bogor

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.32832/krea-tif.v10i1.6678

Abstract

Keamanan merupakan unsur yang sangat penting pada jaringan komputer. Hal ini dilakukan dalam upaya memberikan perlindungan pada jaringan komputer untuk mencegah ancaman-ancaman baik dari internal maupun eksternal dalam upaya mencegah pengambilan data secara paksa (tidak sah). Sistem keamanan jaringan perlu dibangun untuk mengontrol akses pada aset-aset yang penting, salah satunya data, sehingga hak akses setiap komputer maupun user perlu diatur. Metode port blocking menjadi salah satu teknik yang dapat digunakan dalam mengatur akses dari user maupun komputer. Port blocking dapat digunakan untuk mengatur hak akses jaringan pada setiap port LAN (Local Area Network). Secara spesifik pengaturan port yang berbeda dengan metode default atau static port security, port security dynamic learning dan sticky port security dapat dilakukan. Hal ini sangat berguna untuk menghalangi  akses dari pihak satu ke pihak lain untuk mencegah terjadinya pencurian data dari orang tidak dikenal maupun yang dikenal. Dari pengujian yang dilakukan diketahui bahwa penerapan firewall security port dapat melakukan aksi block pada koneksi jaringan tersebut ketika terjadi perpindahan hak akses.
Implementation of IP SLA and Policy-Based Routing for Failover In a Multi-Homed Network Yusak, Dysan; Sulistyo, Wiwin
INOVTEK Polbeng - Seri Informatika Vol. 10 No. 3 (2025): November
Publisher : P3M Politeknik Negeri Bengkalis

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35314/g2av9m56

Abstract

In the current digital era, stable and uninterrupted internet connectivity is the backbone of modern operations, demanding high availability and reliability. A key challenge is managing the inherent single point of failure associated with a single ISP connection. This study investigates the implementation and effectiveness of IP Service Level Agreement (IP SLA) and Policy-Based Routing (PBR) on a multi-homed network to achieve automated failover optimization. A virtual testbed was constructed using EVE-NG with a Cisco IOS C7200 image, and each test scenario was replicated five times to ensure data consistency. IP SLA was configured for proactive failure detection (parameters: timeout 5000 ms, threshold 500 ms, request-data-size 100, delay up 10, delay down 5), while PBR was used for VLAN-based traffic steering. The results indicate that this solution successfully steered traffic according to policy and achieved a consistent failover switchover time of 1.07–1.09 seconds (n=5), supported by Wireshark analysis, which documented up to 100% packet loss during the transition. The failure detection time, directly correlated with the IP SLA frequency, varied from 3.96 seconds (5-second frequency) to 45.63 seconds (60-second frequency). During the transition, router CPU load remained low at 3%, indicating high resource efficiency. This research concludes that the combination of IP SLA and PBR is an effective solution for enhancing the resilience and service continuity of multi-homed networks with minimal computational overhead.
Analisis QoS Differentiated Service pada Jaringan MPLS Menggunakan Algoritma Threshold Saputra, Laufi Dian Deodo; Sulistyo, Wiwin
Jurnal Teknologi Informasi dan Ilmu Komputer Vol 4 No 4: Desember 2017
Publisher : Fakultas Ilmu Komputer, Universitas Brawijaya

Show Abstract | Download Original | Original Source | Check in Google Scholar | Full PDF (80.024 KB) | DOI: 10.25126/jtiik.201744427

Abstract

AbstrakSeiring perkembangan layanan komunikasi data seperti voice (VoIP) dan video streaming pada jaringan yang memiliki buffer space dan bandwidth terbatas menyebabkan terjadinya beban traffic. Hal tersebut membuat pengguna VoIP dan video streaming membutuhkan suatu jaringan yang dapat memberikan Quality of Service (QoS) dalam memenuhi kebutuhan pengguna. IETF (Internet Engineering Task Force) mempunyai standar mekanisme layanan untuk memenuhi permintaan QoS diantaranya adalah penggabungan teknologi MPLS Diffserv yang mampu mengklasifikasi paket sesuai kebutuhan, tetapi ketika penumpukan terjadi akibat proses QoS ini, paket yang menumpuk tersebut akan di-drop, maka solusi untuk mengantisipasi dropping digunakanlah algortima threshold pada WRED. Penambahan WRED sebagai algoritma threshold pada jaringan MPLS Diffserv memberikan pengaruh yang signifikan, dari hasil parameter QoS untuk layanan VoIP mampu mengurangi packet loss 43,1%, delay 0,005%, memaksimalkan throughput 1,26% dan mengurangi jitter 48,56%, untuk layanan video streaming mengurangi packet loss 15,93% dan memaksimalkan throughput 1,6% dibandingkan sebelum menerapkan algoritma threshold.Kata kunci: QoS, Diffserv, MPLS, threshold, VoIP, video streamingAbstractThe development of data communication services like voice (VoIP) and video streaming, causing traffic load on networks which has limited buffer space and bandwidth. This condition makes VoIP and video streaming users need a network which can provide Quality of Service (QoS) to fill user needs. The IETF (Internet Engineering Task Force) has a standard service mechanism to fill QoS requests such as Incorporation of MPLS Diffserv technology which  able to classify the package as needed but when the buildup occurs due to this QoS process, the packet will be dropped, Then the solution to anticipate dropping is used threshold algorithm on WRED. Added WRED as threshold algorithm on the MPLS-Diffserv network give a significant effect, from the results of QoS parameters for VoIP service is able to reduce packet loss 43.1%, delay 0.005%, maximize of throughput 1.26% and reduce jitter 48.56%, for streaming video services reduce packet loss 15.93% and maximize the troughput 1,6% than before applying the threshold algorithm.Keywords: QoS, Diffserv, MPLS, threshold, VoIP, video streaming