首页> 外文会议>International Conference on Inventive Communication and Computational Technologies >An analysis of various snort based techniques to detect and prevent intrusions in networks proposal with code refactoring snort tool in Kali Linux environment
【24h】

An analysis of various snort based techniques to detect and prevent intrusions in networks proposal with code refactoring snort tool in Kali Linux environment

机译:基于Snort基于Snort的探测和防止网络提案中的侵入的分析,在Kali Linux环境中具有代码重构Snort工具的侵入

获取原文

摘要

Security and reliability are the major concern of our daily life usage of any network. But with the swift advancements in network technology, attacks are becoming more sophisticated than defenses. Although firewalls and router-based packet filtering are essential elements of an overall network security topology, they are not enough on their own. So, to brace the network from unauthorized access the idea of Intrusion Detection System (IDS) and Intrusion Prevention System (IPS) is attracting security experts. This paper briefs various trends in Intrusion Detection & Prevention. To understand various techniques in IDS, this paper analyses various approaches proposed by security researchers specifically using popular open source software Snort as their IDS tool. Being an open source IDS, Snort can be easily configured and deployed in any environment. To assess the efficiency, these research papers are analyzed in various performance aspects like Detection Accuracy, Scalability and Capability of detecting unknown attacks. To overcome various challenges like low detection rate, incapable of handling huge traffic, unsupported automated tuning, etc. that are identified during literature review, this paper proposes a level based architecture. All the levels are designed as incremental i.e. capable of providing the desired functionality and also its lower levels. To prove the efficiency of the proposed architecture, it can be integrated into Snort Tool using Code Refactoring. Also proposed an environment setup to evaluate the modified Snort Tool performance in future.
机译:安全性和可靠性是我们对任何网络日常生活使用的主要关注点。但随着网络技术的迅速进步,攻击比防御更复杂。虽然防火墙和基于路由器的数据包过滤是整体网络安全拓扑的基本要素,但它们自己还不够。因此,要从未经授权的访问中支撑网络,入侵检测系统(IDS)和入侵防御系统(IPS)的想法是吸引安全专家。本文简要介绍了入侵检测和预防的各种趋势。要了解IDS中的各种技术,本文分析了安全研究人员提出的各种方法,具体使用流行的开源软件哼像机作为其IDS工具。作为开源ID,Snort可以在任何环境中轻松配置和部署。为了评估效率,这些研究论文在各种性能方面进行了分析,如检测准确性,可扩展性和检测未知攻击的能力。为了克服低检测率,无法处理在文献综述期间识别的巨额交通,无支持的自动调整等的各种挑战,本文提出了基于级别的架构。所有级别都被设计为增量I.。能够提供所需的功能以及其较低的级别。为了证明所提出的架构的效率,它可以使用代码重构集成到Snort工具中。还提出了一个环境设置,以评估将来修改的Snort工具性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号