首页> 外文期刊>Advances in Networks >Improving Intrusion Detection and Prevention System (IDPS) Performance in an IPv6 Environment
【24h】

Improving Intrusion Detection and Prevention System (IDPS) Performance in an IPv6 Environment

机译:在IPv6环境中提高入侵检测和预防系统(IDPS)性能

获取原文
           

摘要

This paper presents a comprehensive investigation, backed up by detailed simulations, that the default settings of the software based open source Intrusion Detection and Prevention Systems (IDPs) are not enough to thwart the network attacks in a modern high-speed IPv6-only environment. It aims to solve this problem by improving the processing capabilities of an IDPS in more than one way, with each method being totally independent from the other. The proposed solution can be implemented by any user running an IDPS, without needing escalated privileges. Using and IPv6 packet generator, it is shown that with the increase in IPv6 traffic in a fixed amount of time, the IDPS fails to analyse all the packets and starts dropping them. This phenomenon compromises the core functionality of IDPS which is to stop the unwanted traffic. A hybrid solution has been proposed to increase the performance of the IDPS. Our research involves only the system running an IDPS, with little to no tweaking of the other elements within a network like routers, switches and firewalls. The paper also talks briefly about the current and the future generation of the IDPSs. The simulation with the hybrid solution concludes that the performance is improved to a staggering 200%, approximately, compared to the built-in settings of the IDPS.
机译:本文提出了一个全面的调查,通过详细的模拟备份,即软件的开源入侵检测和预防系统(IDP)的默认设置不足以阻止现代高速IPv6环境中的网络攻击。它旨在通过以多种方式提高IDP的处理能力来解决这个问题,每个方法完全独立于另一个方法。建议的解决方案可以由运行IDP的任何用户实现,而不需要升级权限。使用和IPv6数据包生成器显示,随着IPv6流量的增加,在固定量的时间内,IDPS无法分析所有数据包并开始丢弃它们。这种现象会损害IDP的核心功能,该核心功能是阻止不需要的流量。已经提出了一种混合解决方案来增加IDPS的性能。我们的研究只涉及运行IDP的系统,几乎没有浏览网络中的其他元素,如路由器,交换机和防火墙。本文还简要讨论了目前的国有人和未来一代的IDPS。与混合解决方案的模拟得出结论认为,与IDP的内置设置相比,性能提高到惊人的200%。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号