首页> 外文会议>International conference on Cyber Science and Technology Congress >Enhancing Windows Firewall Security Using Fuzzy Reasoning
【24h】

Enhancing Windows Firewall Security Using Fuzzy Reasoning

机译:使用模糊推理增强Windows防火墙安全性

获取原文

摘要

Firewall is a standard security utility within the Microsoft Windows operating system. Most Windows users adopt it as the default security option due to its free availability. Moreover, Windows Firewall is a widely used security tool because of the large market share of the Microsoft Windows operating system. It can be customised for filtering of network traffic based on user-defined inbound and outbound rules. It is supplied with only basic functionality. As a result it cannot be considered as an effective tool for monitoring and analysing of inbound and outbound traffic. Nonetheless, as a freely available and conventional end user security tool, with some enhancement it could perform as a useful security tool for millions of Windows users. Therefore, this paper presents an enhanced Windows Firewall for a more effective monitoring and analysis of network traffic, based upon an intuitive fuzzy reasoning approach. Consequently, it can be used to prevent a greater range of attacks beyond the simple filtering of inbound and outbound network traffic. In this paper, a simulation of ICMP flooding is demonstrated, where the created firewall inbound and outbound rules are insufficient to monitor ICMP flooding. However, the addition of fuzzy reasoning system monitored it successfully and enhanced the standard Windows Firewall functionality to prevent ICMP flooding. The use of this Windows Fuzzy-Firewall can also be extended to prevent TCP flooding, UDP flooding and some other types of denial of service attacks.
机译:防火墙是Microsoft Windows操作系统中的标准安全实用程序。由于其免费可用性,大多数Windows用户通过其作为默认安全选项。此外,由于Microsoft Windows操作系统的市场份额大,Windows防火墙是一个广泛使用的安全工具。它可以根据用户定义的入站和出站规则过滤网络流量来定制它。它仅提供基本功能。因此,它不能被视为监控和分析入站和出境流量的有效工具。尽管如此,作为可自由的和传统的最终用户安全工具,具有一些增强功能,它可以作为数百万个Windows用户执行作为有用的安全工具。因此,基于直观的模糊推理方法,本文提高了一个增强的Windows防火墙,用于更有效地监测和分析网络流量。因此,它可用于防止超出入站和出站网络流量的简单过滤的更大范围的攻击。在本文中,演示了ICMP泛洪的模拟,其中创建的防火墙入站和出站规则不足以监控ICMP洪水。但是,添加模糊推理系统成功监控它并增强了标准的Windows防火墙功能,以防止ICMP泛洪。使用此Windows模糊防火墙也可以扩展,以防止TCP洪水,UDP洪水和其他类型的服务攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号