首页> 外文期刊>International Journal of Network Security & Its Applications >An Active Host-Based Intrusion Detection System for ARP-Related Attacks and its Verification
【24h】

An Active Host-Based Intrusion Detection System for ARP-Related Attacks and its Verification

机译:一种基于主机的主动主机入侵检测系统,用于ARP相关攻击及其验证

获取原文
           

摘要

Spoofing with falsified IP-MA C pair is the first step in most of the LAN based-attacks. Address Resolution Protocol (ARP) is stateless, which is the main cause that makes spoofing possible. Several network level and host level mechanisms have been proposed to detect and mitigate ARP spoofing but each of them has their own drawback. In this paper we propose a Host-based Intrusion Detection system for LAN attacks, which works without any extra constraint like static IP-MAC, modifying ARP etc. The proposed scheme is verified under all possible attack scenarios. The scheme is successfully validated in a test bed with various attack scenarios and the results show the effectiveness of the proposed technique
机译:使用伪造的IP-MA C对进行欺骗是大多数基于LAN的攻击的第一步。地址解析协议(ARP)是无状态的,这是导致欺骗的主要原因。已经提出了几种网络级和主机级机制来检测和减轻ARP欺骗,但是它们各自都有其缺点。在本文中,我们提出了一种用于局域网攻击的基于主机的入侵检测系统,该系统无需任何额外的约束即可工作,例如静态IP-MAC,修改ARP等。该提议的方案在所有可能的攻击场景下均得到了验证。该方案已在各种攻击场景的测试台上成功验证,结果表明了该技术的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号