首页> 外文会议>International Conference on Advanced Science and Technology >An Active Intrusion Detection System for LAN Specific Attacks
【24h】

An Active Intrusion Detection System for LAN Specific Attacks

机译:LAN特定攻击的主动入侵检测系统

获取原文

摘要

Local Area Network (LAN) based attacks are due to compromised hosts in the network and mainly involve spoofing with falsified IP-MAC pairs. Since Address Resolution Protocol (ARP) is a stateless protocol such attacks are possible. Several schemes have been proposed in the literature to circumvent these attacks, however, these techniques either make IP-MAC pairing static, modify the existing ARP, patch operating systems of all the hosts etc. In this paper we propose an Intrusion Detection System (IDS) for LAN specific attacks without any extra constraint like static IP-MAC, changing the ARP etc. The proposed IDS is an active detection mechanism where every pair of IP-MAC are validated by a probing technique. The scheme is successfully validated in a test bed and results also illustrate that the proposed technique minimally adds to the network traffic.
机译:基于地方的局域网(LAN)的攻击是由于网络中的妥协主机,主要涉及欺骗IP-MAC对的欺骗。由于地址解析协议(ARP)是无状态协议,因此可能的攻击是可能的。在文献中提出了几种方案来规避这些攻击,然而,这些技术可以使IP-MAC配对静态,修改所有主机的现有ARP,补丁操作系统等。在本文中,我们提出了一种入侵检测系统(IDS )对于LAN特定攻击而没有任何额外的约束,如静态IP-MAC,改变ARP等。所提出的ID是一个有源检测机制,通过探测技术验证每对IP-MAC。该方案在试验床中成功验证,结果还说明所提出的技术最小地增加了网络流量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号