首页> 外文期刊>Wuhan University Journal of Natural Sciences >A Scalable Intrusion Detection System for IPv6
【24h】

A Scalable Intrusion Detection System for IPv6

机译:IPv6的可扩展入侵检测系统

获取原文
获取原文并翻译 | 示例
           

摘要

The next generation protocol IPv6 brings the new challenges to the information security. This paper presents the design and implementation of a network-based intrusion detection system that support both IPv6 protocol and IPv4 protocol. This system's architecture is focused on performance, simplicity, and scalability. There are four primary subsystems that make it up: the packet capture, the packet decoder, the detection engine, and the logging and alerting subsystem. This paper further describes a new approach to packet capture whose goal is to improve the performance of the capture process at high speeds. The evaluation shows that the system has a good performance to detect IPv6 attacks and IPv4 attacks, and achieves 61% correct detection rate with20% false detection rate at the speed of 100 Mb-s~(-1).
机译:下一代协议IPv6给信息安全带来了新挑战。本文介绍了同时支持IPv6协议和IPv4协议的基于网络的入侵检测系统的设计和实现。该系统的体系结构侧重于性能,简单性和可伸缩性。它由四个主要子系统组成:数据包捕获,数据包解码器,检测引擎以及日志记录和警报子系统。本文进一步描述了一种新的数据包捕获方法,其目的是提高高速捕获过程的性能。评估表明,该系统具有良好的IPv6攻击和IPv4攻击检测性能,在100 Mb-s〜(-1)的速度下,可以达到61%的正确检测率和20%的错误检测率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号