A Novel Network Intrusion Detection System in Cloud Computing
碩士 === 國立成功大學 === 電腦與通信工程研究所 === 102 === With the growth of cloud computing and the maturity of virtualization technology, many enterprises keep on virtualizing their servers for increasing the utilization of servers and lowering their costs. However, complex network topology resulted from virtualiz...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | en_US |
Published: |
2014
|
Online Access: | http://ndltd.ncl.edu.tw/handle/26559184372385163182 |
id |
ndltd-TW-102NCKU5652045 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-102NCKU56520452016-03-07T04:10:58Z http://ndltd.ncl.edu.tw/handle/26559184372385163182 A Novel Network Intrusion Detection System in Cloud Computing 於雲端平台中入侵偵測系統之研究 Zhi-KaiMo 莫智凱 碩士 國立成功大學 電腦與通信工程研究所 102 With the growth of cloud computing and the maturity of virtualization technology, many enterprises keep on virtualizing their servers for increasing the utilization of servers and lowering their costs. However, complex network topology resulted from virtualized infrastructures may make cloud more vulnerable. And some security events occurred on cloud computing platform in recent years. Therefore, a proper mechanism is needed for detection and prevention of malicious traffic. We propose a network intrusion detection system based on virtualization platform. This intrusion detection system is improved from a multi-pattern based network traffic classifier, collecting packets from the virtual network environment and analyzes content of packets to identify malicious network traffic and intrusion attempts with deep packet inspection technique. We improve the intrusion detection features of the network traffic classifier and deploy it in the XEN virtualization platform. Our system combines with Linux Netfilter framework to monitor inter-virtual-machine communications in the virtualization platform. It also inspects packet efficiently and prevents the cloud computing environment from malicious traffic instantly. Chu-Sing Yang 楊竹星 2014 學位論文 ; thesis 40 en_US |
collection |
NDLTD |
language |
en_US |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立成功大學 === 電腦與通信工程研究所 === 102 === With the growth of cloud computing and the maturity of virtualization technology, many enterprises keep on virtualizing their servers for increasing the utilization of servers and lowering their costs. However, complex network topology resulted from virtualized infrastructures may make cloud more vulnerable. And some security events occurred on cloud computing platform in recent years. Therefore, a proper mechanism is needed for detection and prevention of malicious traffic. We propose a network intrusion detection system based on virtualization platform. This intrusion detection system is improved from a multi-pattern based network traffic classifier, collecting packets from the virtual network environment and analyzes content of packets to identify malicious network traffic and intrusion attempts with deep packet inspection technique. We improve the intrusion detection features of the network traffic classifier and deploy it in the XEN virtualization platform. Our system combines with Linux Netfilter framework to monitor inter-virtual-machine communications in the virtualization platform. It also inspects packet efficiently and prevents the cloud computing environment from malicious traffic instantly.
|
author2 |
Chu-Sing Yang |
author_facet |
Chu-Sing Yang Zhi-KaiMo 莫智凱 |
author |
Zhi-KaiMo 莫智凱 |
spellingShingle |
Zhi-KaiMo 莫智凱 A Novel Network Intrusion Detection System in Cloud Computing |
author_sort |
Zhi-KaiMo |
title |
A Novel Network Intrusion Detection System in Cloud Computing |
title_short |
A Novel Network Intrusion Detection System in Cloud Computing |
title_full |
A Novel Network Intrusion Detection System in Cloud Computing |
title_fullStr |
A Novel Network Intrusion Detection System in Cloud Computing |
title_full_unstemmed |
A Novel Network Intrusion Detection System in Cloud Computing |
title_sort |
novel network intrusion detection system in cloud computing |
publishDate |
2014 |
url |
http://ndltd.ncl.edu.tw/handle/26559184372385163182 |
work_keys_str_mv |
AT zhikaimo anovelnetworkintrusiondetectionsystemincloudcomputing AT mòzhìkǎi anovelnetworkintrusiondetectionsystemincloudcomputing AT zhikaimo yúyúnduānpíngtáizhōngrùqīnzhēncèxìtǒngzhīyánjiū AT mòzhìkǎi yúyúnduānpíngtáizhōngrùqīnzhēncèxìtǒngzhīyánjiū AT zhikaimo novelnetworkintrusiondetectionsystemincloudcomputing AT mòzhìkǎi novelnetworkintrusiondetectionsystemincloudcomputing |
_version_ |
1718199713180680192 |