Dissertation > Excellent graduate degree dissertation topics show

Research and Implementation of the Intrusion Detection Engine of MSN Based on Deep Protocol Analysis and Dynamical Rule Set

Author: LiZhen
Tutor: ShiZuo
School: Northeastern University
Course: Computer System Architecture
Keywords: Intrusion detection Depth analysis to the protocol Pattern matching Rules priority Dynamic rule-base
CLC: TP393.08
Type: Master's thesis
Year: 2008
Downloads: 13
Quote: 0
Read: Download Dissertation

Abstract


The high frequency of network intrusion brings incalculable loss to users around the world. The appropriate defense work is not enough to ensure the system security. As an active tool for security protection, the intrusion detection system (IDS) can detect the invasion attack before the computer network suffers from harm, and intercept or warn the invasion, which provides the security for computer network. However, with the development of network, the IDS is confronted with enormous challenges.Presently, the IDS is provided with higher leakage rate and misinformation rate.How to improve the accuracy of detection and how to accelerate the speed of data detection are the keys to solve these problems.According to the higher misinformation rate of the existing IDS,a method is presented which is the deep analysis of protocol and analyses the protocol payload to improve the accuracy of invasion detection. Because of the content detection, the large-scale rules are brought to the existing system.When the system processes the pattern matching, the heavy burden leads to the depressed performance.For solving the abuse, a strategy of distributed pattern matching is proposed and the rules of different protocols are classified based on the protocol analysis, which reduces the rules at a certain extent. Furthermore,a dynamic rule-set strategy is presented to reduce the mass rules.Thus, when the IDS processes the pattern matching, the performances are improved and the speed of data detection is accelerated.Beginning with the requirements of existing network security and the developing status of intrusion detection, the main research and the structure are proposed. A reference model of intrusion detection is presented and the key technologies of the mode are analyzed. The technologies include the deep analysis of protocol, the intrusion detection based on states and the optimization of rules. The improved method which is proposed in this paper is provided with the crucial effect on the performance improvement of intrusion detection, which is verified by experiments.

Related Dissertations

  1. Intrusion detection based on the ultrasonic echo envelope in the military security patrols,E919
  2. Research on Intrusion Detection Technology of Wireless Sensor Networks Based on Behavior Trust,TP212.9
  3. Association rule mining based Intrusion Detection System Research and Implementation,TP393.08
  4. The Research on Intrusion Detection System Based on Machine Learning,TP393.08
  5. Research on Relationship Extraction Based on Semantic Pattern Matching in Web Environment,TP391.1
  6. Intrusion Detection in Mobile Ad Hoc Networks: A Timed Finite State Machines Approach,TN929.5
  7. The Research and Realization of Unwanted Code Monitoring System Based on Heuristic Algorithm,TP393.08
  8. An Intrusion Detection System for High-Speed Networks,TP393.08
  9. Research on the Security in Wireless Sensor Network,TN915.08
  10. Sensitivity Analysis and Application of Orthogonal Weight Function Neural Network,TP183
  11. CUDA-based regular expression matching system design and implementation,TP311.52
  12. Windows Kernel Rootkit Detection Technology Research,TP309
  13. Zombie control behavior recognition and detection method of,TP393.08
  14. The Study of Intelligent Intrusion Detection System Based on Neural Network in Linux,TP393.08
  15. Petri net -based network intrusion detection system Research and Implementation,TP393.08
  16. FSVM -based data mining method and its application to intrusion detection research,TP393.08
  17. Ares protocol analysis and traffic detection mechanism,TP393.06
  18. Web-based intrusion detection system logs Design and Implementation,TP393.08
  19. IPv4-IPv6 transition technologies CIDF Based Intrusion Detection System,TP393.08
  20. Intrusion detection based on data mining technology research,TP393.08
  21. Mechanisms based on trust metrics Research and Implementation of Intrusion Detection System,TP393.08

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile