NetFlow Based Intrusion Detection System
碩士 === 大同大學 === 資訊工程學系(所) === 92 === Due to the popularity of Internet, people can access remote resource on the Internet conveniently. But numerous malicious network events such as computer virus and hacker attack make the network management more difficult. A network intrusion detection system is t...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | en_US |
Published: |
2004
|
Online Access: | http://ndltd.ncl.edu.tw/handle/82779373654190533992 |
id |
ndltd-TW-092TTU00392002 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-092TTU003920022016-06-15T04:17:09Z http://ndltd.ncl.edu.tw/handle/82779373654190533992 NetFlow Based Intrusion Detection System 以網路流量為基礎的入侵偵測系統 Po-Wei Wang 王博瑋 碩士 大同大學 資訊工程學系(所) 92 Due to the popularity of Internet, people can access remote resource on the Internet conveniently. But numerous malicious network events such as computer virus and hacker attack make the network management more difficult. A network intrusion detection system is thus more and more demanding. In this thesis, a NetFlow based anomaly intrusion detection system is presented. In addition, guidelines to properly configure and setup network device to minimize the possibilities that network attacks come from inside are also proposed. As the Internet becomes the platform of daily activities, the threat of network attack is also become more serious. Firewall along is not capable to protect the system from being attacked through normal service channel. Furthermore, most of the current intrusion detection system focus on the border of organization network which does not provide protection to hosts in the local network and the network itself if the attack is from inside. Therefore, in addition to the firewall and border IDS, we need to use other type of intrusion detection system to protect the critical system as well as the network itself.We propose an inexpensive and easy to implement way to perform the anomaly type intrusion detection based on the NetFlow information exported from the routers or other network probes. Our system can detect several types of network attack from inside or outside and perform counter maneuver accordingly. Tsang-Long Pao 包蒼龍 2004 學位論文 ; thesis 58 en_US |
collection |
NDLTD |
language |
en_US |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 大同大學 === 資訊工程學系(所) === 92 === Due to the popularity of Internet, people can access remote resource on the Internet conveniently. But numerous malicious network events such as computer virus and hacker attack make the network management more difficult. A network intrusion detection system is thus more and more demanding.
In this thesis, a NetFlow based anomaly intrusion detection system is presented. In addition, guidelines to properly configure and setup network device to minimize the possibilities that network attacks come from inside are also proposed. As the Internet becomes the platform of daily activities, the threat of network attack is also become more serious. Firewall along is not capable to protect the system from being attacked through normal service channel. Furthermore, most of the current intrusion detection system focus on the border of organization network which does not provide protection to hosts in the local network and the network itself if the attack is from inside. Therefore, in addition to the firewall and border IDS, we need to use other type of intrusion detection system to protect the critical system as well as the network itself.We propose an inexpensive and easy to implement way to perform the anomaly type intrusion detection based on the NetFlow information exported from the routers or other network probes. Our system can detect several types of network attack from inside or outside and perform counter maneuver accordingly.
|
author2 |
Tsang-Long Pao |
author_facet |
Tsang-Long Pao Po-Wei Wang 王博瑋 |
author |
Po-Wei Wang 王博瑋 |
spellingShingle |
Po-Wei Wang 王博瑋 NetFlow Based Intrusion Detection System |
author_sort |
Po-Wei Wang |
title |
NetFlow Based Intrusion Detection System |
title_short |
NetFlow Based Intrusion Detection System |
title_full |
NetFlow Based Intrusion Detection System |
title_fullStr |
NetFlow Based Intrusion Detection System |
title_full_unstemmed |
NetFlow Based Intrusion Detection System |
title_sort |
netflow based intrusion detection system |
publishDate |
2004 |
url |
http://ndltd.ncl.edu.tw/handle/82779373654190533992 |
work_keys_str_mv |
AT poweiwang netflowbasedintrusiondetectionsystem AT wángbówěi netflowbasedintrusiondetectionsystem AT poweiwang yǐwǎnglùliúliàngwèijīchǔderùqīnzhēncèxìtǒng AT wángbówěi yǐwǎnglùliúliàngwèijīchǔderùqīnzhēncèxìtǒng |
_version_ |
1718305384512356352 |