首页> 外文会议>International conference on security management;SAM'10 >Travelling Information For Intrusion Prevention Systems
【24h】

Travelling Information For Intrusion Prevention Systems

机译:入侵防御系统的旅行信息

获取原文

摘要

The proliferation of wideband connections while opening the market to a wealth of new web based applications has also provided a pervasive set of injection points for malicious network traffic. This fact has generated a new storm of network attacks that every day generates a non negligible amount of network traffic. Intrusion Detection Systems (IDS) aim at preventing the delivery of malicious traffic to targeted systems thus preventing damage at the end point of the attack, however they are positioned either on a single host or on very peripheral routers, thus they do not provide any help in reducing the amount of malicious traffic roaming the network. The sheer amount of traffic to be analyzed prevents any attempt to move intrusion detection to core routers, however Distributed Intrusion Detection Systems (DIDS) may provide a solution. In past works DIDS have been envisioned as cooperative clusters of traditional IDS, in this paper we present a novel methodology that allows distributing the computational load of intrusion detection on several nodes thus allowing to empower the network itself of intrusion detection and prevention capabilities.
机译:宽带连接的激增,同时也为大量基于Web的新应用打开了市场,也为恶意网络流量提供了广泛的注入点。这一事实引起了网络攻击的新风暴,每天都会产生不可忽略的网络流量。入侵检测系统(IDS)旨在防止恶意流量传递到目标系统,从而防止在攻击的终点受到破坏,但是它们位于单个主机或非常外围的路由器上,因此无法提供任何帮助减少了漫游网络的恶意流量。要分析的大量通信量阻止了将入侵检测转移到核心路由器的任何尝试,但是分布式入侵检测系统(DIDS)可以提供解决方案。在过去的工作中,DIDS被设想为传统IDS的协作集群,在本文中,我们提出了一种新颖的方法,该方法可以将入侵检测的计算负载分布在多个节点上,从而可以使网络本身具有入侵检测和防御功能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号