Leveraging active firewalls for network intrusion detection and retardation of attack

作者: Robert Ian Oliver , Alexander Frank

DOI:

关键词: Data sourceFirewall (construction)Network intrusion detectionReal-time computingComputer networkOpen portEngineering

摘要: A computer network firewall or filter functions normally to pass data on open ports a respective service source associated with an port. In addition, traffic arriving closed may be directed handler for analysis and response. The analyze catalog the type of ports. then send response either fixed tailored nature traffic. respond slowly cause wait response, thereby slowing speed at which potential attacker can identify valid targets proceed past non-valid targets.

参考文章(25)
David L. Majette, Michael John Coss, Ronald L. Sharp, Methods and apparatus for a computer network firewall with stateful packet filtering ,(1998)
Thomas C. Stracener, John S. Flowers, Interoperability of vulnerability and intrusion detection systems ,(2007)
Henry D. Poelstra, Stephen C. Gordy, Robert W. Otis, Tom Gallatin, Network security tap for use with intrusion detection system ,(2003)
Michael J. McDaniels, Ronald J. Miller, Mark L. Wilkinson, Tracking communication for determining device states ,(2003)
Ashley Anderson Brock, Jeffrey Scott Bardsley, Charles Steven Lingafelt, Nathaniel Wook Kim, Correlating network information and intrusion information to find the entry point of an attack upon a protected computer ,(2001)
Priya Rajagopal, Ravi Sahita, Pankaj Parmar, Programmable context aware firewall with integrated intrusion detection system ,(2004)
Robert Gleichauf, Scott Waddell, Kevin Ziese, Steven Shanklin, System and method for rules-driven multi-phase network vulnerability assessment ,(1998)
Mark James McArdle, Emilio Villa, Michael David Varga, Adrian Zidaritz, Gerhard Eschelbeck, Michael Kevin Jones, Active firewall system and methodology ,(1999)
Michael P. Vageline, Michael John Jones, Vernon J. Legvold, Matthew John Fairhurst, Method, system, and program for error handling in a dual adaptor system where one adaptor is a master ,(2005)