首页> 外文OA文献 >An Active Host-Based Intrusion Detection System for ARP-Related Attacks and its Verification
【2h】

An Active Host-Based Intrusion Detection System for ARP-Related Attacks and its Verification

机译:一种基于主机的入侵检测系统,用于aRp相关攻击   及其验证

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Spoofing with falsified IP-MAC pair is the first step in most of the LANbased-attacks. Address Resolution Protocol (ARP) is stateless, which is themain cause that makes spoofing possible. Several network level and host levelmechanisms have been proposed to detect and mitigate ARP spoofing but each ofthem has their own drawback. In this paper we propose a Host-based IntrusionDetection system for LAN attacks, which works without any extra constraint likestatic IP-MAC, modifying ARP etc. The proposed scheme is verified under allpossible attack scenarios. The scheme is successfully validated in a test bedwith various attack scenarios and the results show the effectiveness of theproposed technique.
机译:使用伪造的IP-MAC对进行欺骗是大多数基于LAN的攻击的第一步。地址解析协议(ARP)是无状态的,这是导致欺骗的主要原因。已经提出了几种网络级别和主机级别的机制来检测和减轻ARP欺骗,但是每种机制都有其自身的缺点。在本文中,我们提出了一种基于主机的局域网入侵检测系统,该系统可以不受静态IP-MAC,修改ARP等任何额外约束。该方案在所有可能的攻击情形下都得到了验证。该方案在具有各种攻击场景的试验台上成功验证,结果表明了该技术的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号