The Design and Implementation of Distributed Network Event Analyzing and Recording System

碩士 === 國立臺北科技大學 === 資訊工程系研究所 === 101 === This research was to design a distributed network event analyzing and recording system. It observed network activity by capturing and analyzing all packets flow on networks, and recorded data and reconstructed from the captured packets back to their original...

Full description

Bibliographic Details
Main Authors: Yi-Lei Chang, 張以磊
Other Authors: 柯開維
Format: Others
Language:zh-TW
Published: 2013
Online Access:http://ndltd.ncl.edu.tw/handle/28s82r
id ndltd-TW-101TIT05392012
record_format oai_dc
spelling ndltd-TW-101TIT053920122019-05-15T21:02:29Z http://ndltd.ncl.edu.tw/handle/28s82r The Design and Implementation of Distributed Network Event Analyzing and Recording System 分散式網路事件分析紀錄系統之研製 Yi-Lei Chang 張以磊 碩士 國立臺北科技大學 資訊工程系研究所 101 This research was to design a distributed network event analyzing and recording system. It observed network activity by capturing and analyzing all packets flow on networks, and recorded data and reconstructed from the captured packets back to their original form as well. The distributed and modularized architecture were applied to the design. Three subsystems, Capture subsystem, Database subsystem and Analyzing subsystem, were cooperated through internet connection to reach a clear division of work loading and provide more flexibility on system provisioning. The design can also achieve high protocol extendibility, maintainability, and usability. By proposing a unified process, this work implemented protocol analysis and recording functions for FTP, HTTP, SIP and H.323 protocols, and suspected intrusion detection for ARP spoofing, SYN flood and PING attacks. The functionality and stability of the system have been verified through long term test in real laboratory network environment and pressure test by replay large amount of packets use packet generating software. 柯開維 2013 學位論文 ; thesis 93 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立臺北科技大學 === 資訊工程系研究所 === 101 === This research was to design a distributed network event analyzing and recording system. It observed network activity by capturing and analyzing all packets flow on networks, and recorded data and reconstructed from the captured packets back to their original form as well. The distributed and modularized architecture were applied to the design. Three subsystems, Capture subsystem, Database subsystem and Analyzing subsystem, were cooperated through internet connection to reach a clear division of work loading and provide more flexibility on system provisioning. The design can also achieve high protocol extendibility, maintainability, and usability. By proposing a unified process, this work implemented protocol analysis and recording functions for FTP, HTTP, SIP and H.323 protocols, and suspected intrusion detection for ARP spoofing, SYN flood and PING attacks. The functionality and stability of the system have been verified through long term test in real laboratory network environment and pressure test by replay large amount of packets use packet generating software.
author2 柯開維
author_facet 柯開維
Yi-Lei Chang
張以磊
author Yi-Lei Chang
張以磊
spellingShingle Yi-Lei Chang
張以磊
The Design and Implementation of Distributed Network Event Analyzing and Recording System
author_sort Yi-Lei Chang
title The Design and Implementation of Distributed Network Event Analyzing and Recording System
title_short The Design and Implementation of Distributed Network Event Analyzing and Recording System
title_full The Design and Implementation of Distributed Network Event Analyzing and Recording System
title_fullStr The Design and Implementation of Distributed Network Event Analyzing and Recording System
title_full_unstemmed The Design and Implementation of Distributed Network Event Analyzing and Recording System
title_sort design and implementation of distributed network event analyzing and recording system
publishDate 2013
url http://ndltd.ncl.edu.tw/handle/28s82r
work_keys_str_mv AT yileichang thedesignandimplementationofdistributednetworkeventanalyzingandrecordingsystem
AT zhāngyǐlěi thedesignandimplementationofdistributednetworkeventanalyzingandrecordingsystem
AT yileichang fēnsànshìwǎnglùshìjiànfēnxījìlùxìtǒngzhīyánzhì
AT zhāngyǐlěi fēnsànshìwǎnglùshìjiànfēnxījìlùxìtǒngzhīyánzhì
AT yileichang designandimplementationofdistributednetworkeventanalyzingandrecordingsystem
AT zhāngyǐlěi designandimplementationofdistributednetworkeventanalyzingandrecordingsystem
_version_ 1719107685997084672