In-line mode network intrusion detect and prevent system and method thereof

作者: Koo-Hong Kang , Ik-Kyun Kim , Byoung-Koo Kim , Jong-Kook Lee , Jong-Soo Jang

DOI:

关键词:

摘要: Disclosed is an in-line mode network intrusion detecting and preventing system coupled between a protection external network, for states the networks intrusion. The comprises first processor unit monitoring packets communicated to collect various statistical data, performing packet filtering process according rule sensing rule; second checking payloads of with reference attack signatures detect one networks.

参考文章(10)
George Gales, Richard Tarquini, Craig Anderson, Richard Schertz, System and method of defining the security condition of a computer system ,(2001)
Yan Qiao, Xie Weixin, A Network IDS with low false positive rate congress on evolutionary computation. ,vol. 2, pp. 1121- 1126 ,(2002) , 10.1109/CEC.2002.1004400
Charles Steven Lingafelt, Norman C. Strole, Use of a programmable network processor to observe a flow of packets ,(2003)
Henry D. Poelstra, Stephen C. Gordy, Robert W. Otis, Tom Gallatin, Network security tap for use with intrusion detection system ,(2003)
C. Kruegel, F. Valeur, G. Vigna, R. Kemmerer, Stateful intrusion detection for high-speed network's ieee symposium on security and privacy. pp. 285- 293 ,(2002) , 10.1109/SECPRI.2002.1004378
John M. Davis, Richard Takahashi, System and Method For a Secure I/O Interface ,(2004)
Choi Gyeong Hui, Jung Gi Hyeon, Network based intrusion detection system ,(2002)