A Novel Network Intrusion Detection System in Cloud Computing

碩士 === 國立成功大學 === 電腦與通信工程研究所 === 102 === With the growth of cloud computing and the maturity of virtualization technology, many enterprises keep on virtualizing their servers for increasing the utilization of servers and lowering their costs. However, complex network topology resulted from virtualiz...

Full description

Bibliographic Details
Main Authors: Zhi-KaiMo, 莫智凱
Other Authors: Chu-Sing Yang
Format: Others
Language:en_US
Published: 2014
Online Access:http://ndltd.ncl.edu.tw/handle/26559184372385163182
id ndltd-TW-102NCKU5652045
record_format oai_dc
spelling ndltd-TW-102NCKU56520452016-03-07T04:10:58Z http://ndltd.ncl.edu.tw/handle/26559184372385163182 A Novel Network Intrusion Detection System in Cloud Computing 於雲端平台中入侵偵測系統之研究 Zhi-KaiMo 莫智凱 碩士 國立成功大學 電腦與通信工程研究所 102 With the growth of cloud computing and the maturity of virtualization technology, many enterprises keep on virtualizing their servers for increasing the utilization of servers and lowering their costs. However, complex network topology resulted from virtualized infrastructures may make cloud more vulnerable. And some security events occurred on cloud computing platform in recent years. Therefore, a proper mechanism is needed for detection and prevention of malicious traffic. We propose a network intrusion detection system based on virtualization platform. This intrusion detection system is improved from a multi-pattern based network traffic classifier, collecting packets from the virtual network environment and analyzes content of packets to identify malicious network traffic and intrusion attempts with deep packet inspection technique. We improve the intrusion detection features of the network traffic classifier and deploy it in the XEN virtualization platform. Our system combines with Linux Netfilter framework to monitor inter-virtual-machine communications in the virtualization platform. It also inspects packet efficiently and prevents the cloud computing environment from malicious traffic instantly. Chu-Sing Yang 楊竹星 2014 學位論文 ; thesis 40 en_US
collection NDLTD
language en_US
format Others
sources NDLTD
description 碩士 === 國立成功大學 === 電腦與通信工程研究所 === 102 === With the growth of cloud computing and the maturity of virtualization technology, many enterprises keep on virtualizing their servers for increasing the utilization of servers and lowering their costs. However, complex network topology resulted from virtualized infrastructures may make cloud more vulnerable. And some security events occurred on cloud computing platform in recent years. Therefore, a proper mechanism is needed for detection and prevention of malicious traffic. We propose a network intrusion detection system based on virtualization platform. This intrusion detection system is improved from a multi-pattern based network traffic classifier, collecting packets from the virtual network environment and analyzes content of packets to identify malicious network traffic and intrusion attempts with deep packet inspection technique. We improve the intrusion detection features of the network traffic classifier and deploy it in the XEN virtualization platform. Our system combines with Linux Netfilter framework to monitor inter-virtual-machine communications in the virtualization platform. It also inspects packet efficiently and prevents the cloud computing environment from malicious traffic instantly.
author2 Chu-Sing Yang
author_facet Chu-Sing Yang
Zhi-KaiMo
莫智凱
author Zhi-KaiMo
莫智凱
spellingShingle Zhi-KaiMo
莫智凱
A Novel Network Intrusion Detection System in Cloud Computing
author_sort Zhi-KaiMo
title A Novel Network Intrusion Detection System in Cloud Computing
title_short A Novel Network Intrusion Detection System in Cloud Computing
title_full A Novel Network Intrusion Detection System in Cloud Computing
title_fullStr A Novel Network Intrusion Detection System in Cloud Computing
title_full_unstemmed A Novel Network Intrusion Detection System in Cloud Computing
title_sort novel network intrusion detection system in cloud computing
publishDate 2014
url http://ndltd.ncl.edu.tw/handle/26559184372385163182
work_keys_str_mv AT zhikaimo anovelnetworkintrusiondetectionsystemincloudcomputing
AT mòzhìkǎi anovelnetworkintrusiondetectionsystemincloudcomputing
AT zhikaimo yúyúnduānpíngtáizhōngrùqīnzhēncèxìtǒngzhīyánjiū
AT mòzhìkǎi yúyúnduānpíngtáizhōngrùqīnzhēncèxìtǒngzhīyánjiū
AT zhikaimo novelnetworkintrusiondetectionsystemincloudcomputing
AT mòzhìkǎi novelnetworkintrusiondetectionsystemincloudcomputing
_version_ 1718199713180680192