首页> 外文期刊>Journal of The Institution of Engineers (India): Series B >Exploring the use of Iptables as an Application Layer Firewall
【24h】

Exploring the use of Iptables as an Application Layer Firewall

机译:探索iptables作为应用层防火墙的使用

获取原文
获取原文并翻译 | 示例
       

摘要

Application layer attacks pose as a grievous threat to the valuable information stored at Web servers for its illegitimate access. These attacks exploit certain protocols being used by an application of the targeted server, and at network level, these can only be intercepted by reading the contents of the packets before they reach the victim machine. This paper explores the use of Iptables for mitigating such application layer attacks, namely SQL injection, Cross-Site Scripting (XSS), HTTP Flood, FTP Flood and FTP Bounce attacks. The signature keywords used for articulating these attacks were first identified, and then, the new customized Iptables rules were laid for detection and mitigation of these attacks. The Iptables rules were tested on an experimental setup in a real network, and it was found that these rules could successfully detect the attack with the system performance degradation of only about 1% and therefore are easy to implement for configuring a lightweight security solution for application servers.
机译:应用程序层攻击作为对存储在Web服务器的宝贵信息的严重威胁,以获取其非法访问。这些攻击利用目标服务器的应用程序和网络级别使用的某些协议,这些协议只能通过读取受害机之前读取数据包的内容来拦截。本文探讨了iptables用于缓解此类应用层攻击,即SQL注入,跨站点脚本(XSS),HTTP泛洪,FTP洪水和FTP反弹攻击。首先确定用于阐明这些攻击的签名关键字,然后奠定了新的定制IPTABLE规则,以便检测和减轻这些攻击。 IPTables规则在真实网络中的实验设置上进行了测试,并且发现这些规则可以通过系统性能降级成功检测攻击,仅为约1%,因此易于实现用于为应用程序配置轻量级安全解决方案服务器。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号