首页> 外文会议>IEEE Global Communications Conference >A Design of Firewall Based on Feedback of Intrusion Detection System in Cloud Environment
【24h】

A Design of Firewall Based on Feedback of Intrusion Detection System in Cloud Environment

机译:云环境下基于入侵检测系统反馈的防火墙设计

获取原文

摘要

Security is critical to cloud services, this paper introduces a design of firewall, which based on IDS's feedback t change rules in order to detect attack flexible. It combines firewall and Intrusion Detection Systems(IDS) by using Intrusion Detection Systems, which detects ICMP, TCP, UDP attacks. Usually, a cloud service is a service built on a virtual machine. The virtual device is virtualized to achieve the purpose of multiplexing. Therefore, if you want to implement cloud security detection, you can listen to the physical device's network card. There are two types of Intrusion Detection System, one is host- based intrusion detection system(HIDS) and another is network intrusion detection system(NIDS). What's more, in order to highlight the importance of the firewall, the IDS monitoring data is analyzed and added to the firewall's defense strategy automatically. Finally, we measure the effectiveness of the system by False Negative(FN) and False Positive(FP), and verify that feedback plays a crucial role in improving the effectiveness of the system, improving the efficiency of the entire system filtering attacks.
机译:安全性对云服务至关重要,本文介绍了一种防火墙设计,该防火墙基于IDS的反馈t更改规则以灵活地检测攻击。它通过使用检测ICMP,TCP,UDP攻击的入侵检测系统将防火墙和入侵检测系统(IDS)结合在一起。通常,云服务是在虚拟机上构建的服务。虚拟化虚拟设备以实现多路复用的目的。因此,如果要实施云安全检测,则可以收听物理设备的网卡。入侵检测系统有两种类型,一种是基于主机的入侵检测系统(HIDS),另一种是网络入侵检测系统(NIDS)。此外,为了突出防火墙的重要性,将对IDS监视数据进行分析并自动将其添加到防火墙的防御策略中。最后,我们通过误报(FN)和误报(FP)来衡量系统的有效性,并验证反馈在提高系统有效性,提高整个系统过滤攻击的效率方面起着至关重要的作用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号