White Papers

A Denial of Service Resistant Intrusion Detection Architecture

Category: Security

Tags: network

Overview As the capabilities of Intrusion Detection Systems (IDSs) advance, attackers may disable organizations' IDSs before attempting to penetrate more valuable targets. To counter this threat, the paper presents an IDS architecture that is resistant to denial-of-service attacks. The architecture frustrates attackers by making IDS components invisible to attackers' normal means of "Seeing" in a network. Upon a successful attack, the architecture allows IDS components to relocate from attacked hosts to operational hosts thereby mitigating the attack. These capabilities are obtained by using mobile agent technology, utilizing network topology features, and by restricting the communication allowed between different types of IDS components.

Download White Paper

By downloading you agree to our Terms and Conditions. These include information regarding use of your personal data.

Publisher
National Institute of Standards and Technology
File Format
PDF
Date Published
Oct 14, 2008
Format
White Papers
Topics
Intrusion Detection Systems, Denial of Service, Network Security

Similiar White Papers

X-Force®Threat Insight Quarterly Voice over Internet Protocol (VoIP) ? Find out what the threats and challenges are for anyone deploying VoIP

X-Force®Threat Insight Quarterly Voice over Internet Protocol (VoIP) ? Find out what the threats and challenges are for anyone deploying VoIP

The X-Force Threat Insight Quarterly (Threat IQ) highlights the most significant threats and challenges facing security

Publisher: Internet Security Systems  |  Tags: homeland security, security flaws, voip

An independent report by ICSA Labs on the performance of ISS' VoIP-enabled Intrusion Prevention devices

An independent report by ICSA Labs on the performance of ISS' VoIP-enabled Intrusion Prevention devices

This technical product evaluation is focused on the ISS VoIP-enabled Intrusion Prevention devices. These are built to su

Publisher: Internet Security Systems  |  Tags: voip

A DoS Resilient Flow-Level Intrusion Detection Approach for High-Speed Networks

A DoS Resilient Flow-Level Intrusion Detection Approach for High-Speed Networks

Global-scale attacks like viruses and worms are increasing in frequency, severity and sophistication, making it critical

Publisher: Northwestern University  |  Tags: data, false positives, routers

IT's New Role: Defining and Managing Risk

IT's New Role: Defining and Managing Risk

This article explores how a Security Risk Management (SRM) approach can protect your company from the most severe threat

Publisher: McAfee  |  Tags: srm

Jargon, jargon, jargon. Find out what the IT industries acronyms really mean

Jargon, jargon, jargon. Find out what the IT industries acronyms really mean

ISS provide you with a simple glossary of major VoIP terms. What do they really mean, when can they be used? Make yourse

Publisher: Internet Security Systems  |  Tags: voip

National Institute of Standards and Technology White Papers

Guidelines on Firewalls and Firewall Policy

Guidelines on Firewalls and Firewall Policy

Firewall technology has matured to the extent that today's firewalls can coordinate security with other firewalls and in

Publisher: National Institute of Standards and Technology  |  Tags: dsl, firewall, ip

An Integrating Framework for Modeling and Simulation for Emergency Response

An Integrating Framework for Modeling and Simulation for Emergency Response

A number of modeling and simulation tools have been developed and more are being developed for emergency response applic

Publisher: National Institute of Standards and Technology  |  Tags: applications

GLASS (GMPLS Lightwave Agile Switching Simulator) - A Scalable Discrete Event Network Simulator for GMPLS-Based Optical Internet

GLASS (GMPLS Lightwave Agile Switching Simulator) - A Scalable Discrete Event Network Simulator for GMPLS-Based Optical Internet

This paper explains the design philosophy and the overall architecture of a scalable discrete event network simulator fo

Publisher: National Institute of Standards and Technology  |  Tags: mpls, network, optical network, r&d

Establishing Wireless Robust Security Networks: A Guide to IEEE 802.11i

Establishing Wireless Robust Security Networks: A Guide to IEEE 802.11i

A Wireless Local Area Network (WLAN) enables access to computing resources for devices that are not physically connected

Publisher: National Institute of Standards and Technology  |  Tags: computing, mobility, network

Application of XML Tools for Enterprise-Wide RBAC Implementation Tasks

Application of XML Tools for Enterprise-Wide RBAC Implementation Tasks

The use of Extensible Markup Language (XML) and its associated APIs, for information modeling and information interchang

Publisher: National Institute of Standards and Technology  |  Tags: api, applications, data