Research and design of NIDS based on Linux firewall

被引:0
作者
Jia, Zongpu [1 ,2 ]
Liu, Shufen [3 ]
Wang, Guowei [2 ]
机构
[1] Jilin Univ, Sch Comp Sci & Technol, Changchun 1300123, Peoples R China
[2] Henan Polytech Univ, Sch Comp Sci & Technol, Jiaozuo 454003, Peoples R China
[3] Jilin Univ, Sch Comp Sci & Technol, Changchun 1300123, Peoples R China
来源
2006 1ST INTERNATIONAL SYMPOSIUM ON PERVASIVE COMPUTING AND APPLICATIONS, PROCEEDINGS | 2006年
关键词
network security; firewall; network intrusion detection; Linux; Iptables;
D O I
10.1109/SPCA.2006.297482
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Firewall has many shortages, such as it cannot keep away interior attacks, it cannot provide a consistent security strategy, and it has a single bottleneck spot and invalid spot, etc. Intrusion Detection System (IDS) also has many defects, such as low detection ability, lack of effective response mechanism, poor manageability, etc. If firewall and IDS are integrated, the cooperation of them can implement the network security to a great extent: on the one hand, IDS monitors the network, provides a real-time detection of attacks from the interior and exterior, and automatically informs firewall and dynamically alters the rules of firewall once an attack is found; on the other hand, firewall loads dynamic rules to hold up the intrusion, controls the data traffic of IDS and provides the security protection of IDS. Based on constructing firewall with Iptables in the environment of Linux OS, the respective characters of firewall and IDS are analyzed. Then, the viewpoint of integrating firewall and IDS to realize the network security is proposed, and the application and algorithm of intrusion detection are systemically analyzed and designed.
引用
收藏
页码:556 / +
页数:2
相关论文
共 11 条
[11]  
ZIEGLER RL, 2000, LINUX FIREWALL