Layered Security Framework for Intrusion Prevention
نویسندگان
چکیده
Internet provides huge information and value to the users but at the same time access to the internet is prone to increasing number of attacks. Due to vulnerabilities in the network system, protecting network from malicious activities is prime concern today. It is important to analyse vulnerabilities and record them so that future attacks can be predicted. In this paper vulnerabilities which exist in the TCP/IP Model and the attacks which exploit these vulnerabilities are described. Existing defense mechanisms for the attacks are also discussed. We propose a security framework based on TCP/IP layered approach for defense against various network attacks. Keywords— Security, TCP/IP Model, Vulnerabilities, Attacks
منابع مشابه
Automatic Verification of Distributed and Layered Security Policy Implementations
Access control has long been the linchpin of intrusion prevention. Modern networked systems that are intended to be secure have a global policy, usually implicit, that specifies the overall system-level objectives with respect to access to various resources. The policy indicates both what is inadmissible, so that the intrusion attempts from within and without the network may be prevented, and w...
متن کاملTechniques of Wireless Intrusion Detection System: T-WIDZ
Recently data mining methods have gained importance in addressing network security issues, including network intrusion detection-a challenging task in network security. Intrusion detection systems aim to identify attacks with a high detection rate and a low false alarm rate. Intrusion Detection System (IDS) and Intrusion Prevention Systems (IPS) in computer network security are real-time softwa...
متن کاملA Layered Framework for Placement of Distributed Intrusion Detection Devices
Network based distributed intrusion detection is a common trend in several commercial intrusion detection systems. However, network based intrusion detection requires that a security officer comprehends the dynamic and non-deterministic nature of data traffic across the network. This paper provides security officers with a brief introduction to intrusion detection techniques and classifications...
متن کاملMHIDCA: Multi Level Hybrid Intrusion Detection and Continuous Authentication for MANET Security
Mobile ad-hoc networks have attracted a great deal of attentions over the past few years. Considering their applications, the security issue has a great significance in them. Security scheme utilization that includes prevention and detection has the worth of consideration. In this paper, a method is presented that includes a multi-level security scheme to identify intrusion by sensors and authe...
متن کاملA Review for an Intrusion Detection System Combined with Neural Network
Intrusion detection system has become a core component in computer network era. It is expanding day by day. That is why, there is a need for security from attackers, spammers and criminal enterprises as they are growing up with the expansion of Internet. An Intrusion Detection System is integrated with neural network using layered framework to build an effective computer network. This existing ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2011