Dissertation > Excellent graduate degree dissertation topics show

Research and Implementation on Method of Attack Signature Based IDS Testing Data Generating

Author: ZhaoLiang
Tutor: SiZhiGang
School: PLA Information Engineering University
Course: Computer technology
Keywords: Attack Signature IDS Testing Snort Rules
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 62
Quote: 0
Read: Download Dissertation

Abstract


IDS(Intrusion Detection System) is a generalized component in making security solving scheme,and high frequency method in defense system.That always lead to overmuch relying on IDS.So it is very important to keep IDS itself be security and we should test intrusion detection systems completely before using them.Currently,IDS testing data mainly produced with intervention of people so often,which can’t meet the need of number and category of IDS security testing,that constrained the promotion and application of IDS security testing.In order to meet the need of a great quantity testing data,to enlarge range of testing and to improve the efficiency,the main research work of this thesis as follows:1.This paper has summarized present condition of IDS testing and popular method of testing data producing,also it has proposed the need of testing data generating when testing Intrusion Detection System.2.This paper has built the scheme of testing data generation based on attack signature.After analyzing the signature of several attack,we concluded how to descript attack signature and summarized some attack signatures.Also have we promoted a scheme of IDS testing data generating based on attack signature.3.This paper has built SNORT rule file parser based on ANTLR.To use snort rules as input of attack signature has the priviledge of more kinds of attack,more ability of extension and more convienence of writing new signatures.After studying on character of snort rules,we have written the grammar file of snort rules according to ANTLR grammar.We also generated the lexer and parser of snort rule file.4.This paper designed IDS testing data generating system based on Libnet.We based packet generating on Libnet after comparing each other among mainstream network developing library.It showed the design of classes and functions.At last,it evaluated the packet generated by system through experiment.

Related Dissertations

  1. Research on the multi - party security protocol,TP393.08
  2. Research of Network Intrusion Detection System Based on Snort Platform,TP393.08
  3. The Intrusion Detection Based on Intranet in Company-JNIDS,TP393.08
  4. The Experiment Application Research on the Distributed Intrusion Detection System Based on Snort,TP393.08
  5. Implementation Technology intrusion detection system based on multi - agent,TP393.08
  6. Research on Application of Intrusion Detection System Based on Snort in Campus Network,TP393.08
  7. The Study and Analysis of a Net Intrusion Detection System,TP393.08
  8. Research on Key Techniques of Attack Scripts Automatic Generation,TP393.08
  9. Encryption Card Application of Embedded Hardware Firewall Based on IPsec VPN,TP393.08
  10. Research of Security Application in Enterprise Based on PKI Technology,TP393.08
  11. Based on TCP/IP Application Layer Design and Implementation of Security Protocol,TP393.08
  12. Data Privacy-Preserving Schemes for Cloud Computing,TP393.08
  13. Study in Private Information Retrieval Protocal and Applications,TP393.08
  14. Research on Privacy-Enhancing Technologies in Distributed Environment,TP393.08
  15. Platform for ATM host intrusion defense systems design and implementation,TP393.08
  16. Network traffic cleaning system design and implementation,TP393.08
  17. Double defensive methods of SQL injection attacks,TP393.08
  18. Windows-based operating system, hiding technique research program,TP393.08
  19. Enterprise Antispyware Design and Implementation,TP393.08
  20. The Research of IPSec Tunneling Based on Routing Switch Technology,TP393.08
  21. Design and Its Implementation of Bank Information Security Certification System Based on 802.1X Protocol,TP393.08

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile