Effective allied network security system based on designed scheme with conditional legitimate probability against distributed network attacks and intrusions

  • Authors:
  • Ruey-Maw Chen;Kuo-Ta Hsieh

  • Affiliations:
  • Department of Computer Science and Information Engineering, National Chin-Yi University of Technology, No. 35, Lane 215, Sec. 1, Chung-Shan Rd., Taiping, Taichung411, Taiwan;Department of Computer Science and Information Engineering, National Chin-Yi University of Technology, No. 35, Lane 215, Sec. 1, Chung-Shan Rd., Taiping, Taichung411, Taiwan

  • Venue:
  • International Journal of Communication Systems
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

Dependence on the Internet is increasing dramatically. Therefore, many researchers have given great attention to the issue of how to tighten Internet security. This study proposes a new scheme for the distributed intrusion prevention system (DIPS), in which the concept of ‘union’ is presented for satisfying the increasing requirements of Internet security issues. In this proposed design, the network intrusion detection system (NIDS) applies a misuse detection technique to detect well-known intrusion behavior on the Internet. Meanwhile, for anomaly detection technique, a tool named ‘Scent’ (a network traffic sniffer) is combined with conditional legitimate probability to reveal previously undiscovered intrusion packets that do not match the intrusion signatures in NIDS. Moreover, blocking distributed denial-of-service (DDoS) attacks inside the protected allied network is also covered. To increase the detection accuracy, reduction of false positives and false negatives is also accomplished. Experimental results reveal that the suggested network security system scheme is effective and efficient in resolving the intrusion activity problem of real network environments. Copyright © 2011 John Wiley & Sons, Ltd.