@phdthesis{digilib78721, month = {August}, title = {RANCANG BANGUN DAN EVALUASI EFEKTIVITAS SURICATA DENGAN GRAFANA PADA DATA CENTER INTERNAL PTIPD}, school = {UIN SUNAN KALIJAGA YOGYAKARTA}, author = {NIM.: 22106050006 Mochammad Cah Anugrah Gusti}, year = {2026}, note = {Dr. Ir. Bambang Sugiantoro, M.T., IPU., ASEAN Eng.}, keywords = {Suricata, PLG Stack, MITRE ATT\&CK, Lateral Movement, Custom Rules}, url = {https://digilib.uin-suka.ac.id/id/eprint/78721/}, abstract = {PTIPD UIN Sunan Kalijaga network faces application-layer (Layer 7) security blindspots due to limited Deep Packet Inspection (DPI) on commercial edge firewalls and a lack of visibility into Inter-VLAN lateral movement (East-West traffic). This study designs and implements a Suricata-based Intrusion Detection System (IDS) integrated with a resourceefficient Promtail, Loki, and Grafana (PLG) observability stack using a staged two-Virtual Machine architecture. The methodology integrates the Network Development Life Cycle (NDLC), the Penetration Testing Execution Standard (PTES), and the MITRE ATT\&CK framework. Simulations were executed in an isolated Docker Bridge Network, while realworld traffic was monitored via the ENS interface reading Core Switch syslog. System effectiveness was evaluated using a Confusion Matrix against 17 data points over four testing days. Controlled testing demonstrated 100\% Precision, Recall, and Accuracy across 16 True Positive sessions, with zero False Positives or False Negatives. The developed Custom Rules contributed to 62.5\% of total detections, enabling exclusive detection of lateral movement patterns uncovered by public rulesets.} }