...
首页> 外文期刊>Journal of network and computer applications >Distributed intrusion detection scheme for next generation networks
【24h】

Distributed intrusion detection scheme for next generation networks

机译:下一代网络的分布式入侵检测方案

获取原文
获取原文并翻译 | 示例

摘要

IP Multimedia Subsystem (IMS) is a next generation network that provides the hypermedia services as data, voice and video to users. Due to high level requirements for IMS services, new kinds of network attacks are endlessly emerging. Thus, it is of paramount importance to protect the networks from attacks. Consequently, the Intrusion Detection Systems (IDS) are quickly becoming a popular requirement in building a network security infrastructure. Securing service and signalization is a vital feature in the IMS network. Signaling is generally based on Session Initiation Protocol (SIP) which offers numerous challenges regarding security which causes issues in IMS network. This work presents a study of SIP protocol and discovers the critical security vulnerabilities in the course of registration phase. We focused on DDoS attacks on IMS server using SIP particularly with REGISTER message and proposed a scheme based on multi agent systems for intrusion detection which takes the advantage of the distributed paradigm to implement an efficient distributed system, as well as the integration of existing techniques, i.e., the well-known IDS SNORT.
机译:IP多媒体子系统(IMS)是下一代网络,向用户提供数据,语音和视频等超媒体服务。由于对IMS服务的高要求,新型网络攻击层出不穷。因此,保护​​网络免受攻击至关重要。因此,入侵检测系统(IDS)迅速成为构建网络安全基础结构的普遍要求。确保服务和信号安全是IMS网络中的重要功能。信令通常基于会话发起协议(SIP),该协议提供了与安全有关的众多挑战,这些挑战会导致IMS网络出现问题。这项工作提出了对SIP协议的研究,并发现了注册阶段的关键安全漏洞。我们针对使用SIP的IMS服务器(特别是REGISTER消息)对IMS服务器的DDoS攻击进行了研究,并提出了一种基于多代理系统的入侵检测方案,该方案利用分布式范例的优势来实现高效的分布式系统,并且结合了现有技术,即众所周知的IDS SNORT。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号