Network Security: Hybrid IDPS

نویسندگان

  • Youssef Senhaji
  • Hicham Medromi
چکیده

This paper deals with the issue of computer security, which aims to develop a robust and independent security architecture. This architecture consists of several probes spatially distributed to several locations in the network (sensitive servers, DMZ, workstations, etc.). These probes are NIDPS, HIDPS, KIDPS and Arduino Yun Board. These same probes were semantically distributed according to three threat detection methods. At the end of this paper, we developed a hybrid system consisting of a software IDPS represented by a probe developed under Visual C ++ and an embedded solution developed under Python in an Arduino YUN board. We carry out a series of computer attacks on our detection system to assess its response time. General Terms Network Security, IDPS, Real Time, Embedded System, Distributed System, Arduino.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Efficacy of Attack detection capability of IDPS based on it's deployment in wired and wireless environment

Intrusion Detection and/or Prevention Systems (IDPS) represent an important line of defence against a variety of attacks that can compromise the security and proper functioning of an enterprise information system. Along with the widespread evolution of new emerging services, the quantity and impact of attacks have continuously increased, attackers continuously find vulnerabilities at various le...

متن کامل

Feasibility of Eliminating IDPS Devices from a Web Server Farm

Current web security systems need Intrusion Detection and Prevention Systems (IDPS), web proxies and firewalls to protect the websites from malicious network traffic. All these functions come at a cost for a web farm and add to power costs. Our previous work has concluded that the web server detection of application layer DDoS attacks is far more power efficient than an equivalent IDPS. This pa...

متن کامل

An Autoconfigurated Hybrid Honeypot for Improving Security in Computer Systems

Providing computer system security is one of the important areas of consideration in Information Technology. There is a rapid advancement in this area because no one exactly wants his system to be attacked by an intruder and the data to be compromised. An experienced attacker may get to know the weaknesses of the system and may obtain the sensible data. So its necessary to give protection again...

متن کامل

Design and Implementation of an Intrusion Prevention System Inspired Immune Systems

In view of the recent advances of communication and information technology along with the growing need for online networking, computer security has become a challenge to almost all the studies that have been carried out in this research axis. So far, various tools and mechanisms have been developed in order to guarantee a safety level up to the requirements of modern life. Among these, intrusio...

متن کامل

Evaluating Intrusion Detection and Prevention Systems Using Tomahawk and Wireshark

The increase in the security breach of computer systems and computer networks has led to the increase in the number of security tools that seek to protect these asserts. Among these tools are intrusion detection and prevention systems (IDPS). An IDPS is a security system that is used to detect and prevent security violations. Evaluating the effectiveness of IDPS is complicated and there has not...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2015