A HYBRID INTRUSION DETECTION SYSTEM DESIGN FOR COMPUTER NETWORK SECURITY
Journal: International Journal of Engineering Sciences & Research Technology (IJESRT) (Vol.7, No. 4)Publication Date: 2018-04-30
Authors : Simranjeet Singh;
Page : 339-343
Keywords : ;
Abstract
Intrusions detection systems (IDSs) are systems that try to detect attacks as they occur or after the attacks took place. IDSs collect network traffic information from some point on the network or computer system and then use this information to secure the network. Intrusion detection systems can be misuse-detection or anomaly detection based. Misuse-detection based IDSs can only detect known attacks whereas anomaly detection based IDSs can also detect new attacks by using heuristic methods. In this paper we propose a hybrid IDS by combining the two approaches in one system. The hybrid IDS is obtained by combining packet header anomaly detection (PHAD) and network traffic anomaly detection (NETAD) which are anomaly-based IDSs with the misuse-based IDS Snort which is an open-source project. The hybrid IDS obtained is evaluated using the MIT Lincoln Laboratories network traffic data (IDEVAL) as a testbed. Evaluation compares the number of attacks detected by misusebased IDS on its own, with the hybrid IDS obtained combining anomaly-based and misusebased IDSs and shows that the hybrid IDS is a more powerful system..
Other Latest Articles
- AN OVERVIEW OF OPTIMIZATION OF SETTLING TIME OF MR DAMPER WITH SELECTED MR FLUID PARTICLE
- ATM CARD SECURITY WITH CONTRAST CONTROL TECHNIQUES
- INDUSTRIAL DISASTER MANAGEMENT USING ZIGBEE
- EFFECT OF REINFORCEMENT OF ZrO2 ON MECHANICAL PROPERTIES OF Al-5%Si CAST USING VERTICAL CENTRIFUGAL CASTING
- PERFORMANCE OF SELECT MUTUAL FUNDS IN INDIA
Last modified: 2018-04-21 22:12:00