...
首页> 外文期刊>Turkish Journal of Electrical Engineering and Computer Sciences >SoftSwitch: a centralized honeypot-based security approach using software-defined switching for secure management of VLAN networks
【24h】

SoftSwitch: a centralized honeypot-based security approach using software-defined switching for secure management of VLAN networks

机译:SoftSwitch:使用软件定义的交换的基于蜜罐的安全方法,以获得VLAN网络的安全管理

获取原文
           

摘要

Honeypot systems are traps for intruders which simulate real systems such as web, application, and database servers used in information systems. Using these systems, unauthorized and malicious access can be efficiently detected. Honeypot is an entity which acts as a source of valued information and its behavior can be monitored. The inability or difficulty of intrusion detection is a serious security problem in networks including virtual local area network (VLAN). According to the literature, the use of honeypots for intrusion detection and prevention in networks including VLAN is strongly recommended. In this paper, in order to provide security and to detect unauthorized and malicious access to the VLAN, a calized honeypot-based approach with a software-defined switching is proposed. With the developed and proposed honeypot-based intrusion detection and prevention approach, reduction in false alarm, network traffic, and cybersecurity cost, as well as calized control, was provided. The proposed system has been run in GNS3 simulation software and successful results have been obtained by reducing false alarm level, network traffic, and cybersecurity cost. The numerical results of the attacks that were detected based on the port and protocol using SoftSwitch are detailed in the performance evaluation subsection.
机译:蜜罐系统是用于模拟信息系统中使用的Web,应用程序和数据库服务器等真实系统的入侵者的陷阱。使用这些系统,可以有效地检测未经授权和恶意访问。蜜罐是作为有价值信息来源的实体,可以监控其行为。入侵检测的无能性或难度是网络中的虚拟局域网(VLAN)的严重安全问题。根据文献,强烈建议使用蜜罐用于包括VLAN在内的网络中的入侵检测和预防。在本文中,为了提供安全性并检测对VLAN的未经授权和恶意的访问,提出了一种具有软件定义切换的基于卡的蜜罐的方法。通过开发和提出的蜜罐的入侵检测和预防方法,提供了误报,网络流量和网络安全成本以及Contic Control的降低。所提出的系统已经在GNS3仿真软件中运行,通过减少虚假警报水平,网络流量和网络安全成本来获得成功的结果。在性能评估子部分中详细说明了基于使用软交换的端口和协议检测到的攻击的数值结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号