首页> 外文会议>Advances in computer science and information technology >An Active Intrusion Detection System for LAN Specific Attacks
【24h】

An Active Intrusion Detection System for LAN Specific Attacks

机译:一种针对局域网特定攻击的主动入侵检测系统

获取原文
获取原文并翻译 | 示例

摘要

Local Area Network (LAN) based attacks are due to compromised hosts in the network and mainly involve spoofing with falsified IP-MAC pairs. Since Address Resolution Protocol (ARP) is a stateless protocol such attacks are possible. Several schemes have been proposed in the literature to circumvent these attacks, however, these techniques either make IP-MAC pairing static, modify the existing ARP, patch operating systems of all the hosts etc. In this paper we propose an Intrusion Detection System (IDS) for LAN specific attacks without any extra constraint like static IP-MAC, changing the ARP etc. The proposed IDS is an active detection mechanism where every pair of IP-MAC are validated by a probing technique. The scheme is successfully validated in a test bed and results also illustrate that the proposed technique minimally adds to the network traffic.
机译:基于局域网(LAN)的攻击是由于网络中的主机受到攻击而引起的,主要涉及使用伪造的IP-MAC对进行的欺骗。由于地址解析协议(ARP)是无状态协议,因此这种攻击是可能的。文献中已经提出了几种方案来规避这些攻击,但是,这些技术要么使IP-MAC配对变得静态,修改现有的ARP,对所有主机的操作系统进行修补,等等。在本文中,我们提出了入侵检测系统(IDS) )针对LAN特定的攻击,而没有任何额外的约束,例如静态IP-MAC,更改ARP等。所提出的IDS是一种主动检测机制,其中每对IP-MAC对都通过探测技术进行验证。该方案已在测试台上成功验证,结果还表明,所提出的技术对网络流量的影响最小。

著录项

  • 来源
  • 会议地点 Miyazaki(JP);Miyazaki(JP);Miyazaki(JP);Miyazaki(JP);Miyazaki(JP);Miyazaki(JP);Miyazaki(JP);Miyazaki(JP)
  • 作者单位

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

    Department of Computer Science and Engineering Indian Institute of Technology Guwahati, India-781039;

  • 会议组织
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 信息处理(信息加工);
  • 关键词

    lan attack; address resolution protocol; intrusion detection system;

    机译:局域网攻击地址解析协议;入侵侦测系统;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号