Please use this identifier to cite or link to this item: https://repository.cihe.edu.hk/jspui/handle/cihe/1297
DC FieldValueLanguage
dc.contributor.authorChan, Anthony Hing-Hungen_US
dc.contributor.otherBarry, B. I. A.-
dc.date.accessioned2021-08-16T05:44:08Z-
dc.date.available2021-08-16T05:44:08Z-
dc.date.issued2007-
dc.identifier.urihttps://repository.cihe.edu.hk/jspui/handle/cihe/1297-
dc.description.abstractAlthough sharing the same physical infrastructure with data networks makes convergence attractive, it also makes Voice over Internet Protocol (VoIP) networks and applications inherit all the security weaknesses of IP protocol. In addition, VoIP converged networks come with their own set of security concerns. Voice traffic on converged networks is packet switched and vulnerable to interception with the same techniques used to sniff other traffic on a LAN or WAN. Denial of Service (DoS) attacks are one of the most critical threats to VoIP due to the disruption of service and loss of revenue they cause. VoIP systems are supposed to provide the same level of security provided by traditional PSTN networks, although more functionality and intelligence are distributed to the endpoints, and more protocols are involved to provide better service. All these factors make a new design and techniques in Intrusion Detection highly needed. In this paper we propose a novel host based intrusion detection architecture for converged VoIP applications. Our architecture uses the Communicating Extended Finite State Machines formal model to provide both stateful and cross-protocol detection. In addition, it combines signature-based and specification-based detection techniques alongside combining protocol syntax and semantics anomaly detection. A variety of attacks are implemented on our test bed, and the intrusion detection prototype shows promising efficiency. The accuracy of the prototype detection is discussed and analyzed.en_US
dc.language.isoenen_US
dc.publisherSpringeren_US
dc.titleA hybrid, stateful and cross-protocol intrusion detection system for converged applicationsen_US
dc.typeconference proceedingsen_US
dc.relation.publicationOn the Move to Meaningful Internet Systems 2007: CoopIS, DOA, ODBASE, GADA, and IS (OTM Confederated International Conferences) Proceedings, Part IIen_US
dc.identifier.doi10.1007/978-3-540-76843-2_35-
dc.contributor.affiliationSchool of Computing and Information Sciencesen_US
dc.relation.isbn9783540768357en_US
dc.description.startpage1616en_US
dc.description.endpage1633en_US
dc.cihe.affiliatedNo-
item.languageiso639-1en-
item.fulltextNo Fulltext-
item.openairetypeconference proceedings-
item.grantfulltextnone-
item.openairecristypehttp://purl.org/coar/resource_type/c_5794-
item.cerifentitytypePublications-
crisitem.author.deptYam Pak Charitable Foundation School of Computing and Information Sciences-
crisitem.author.orcid0000-0001-7479-0787-
Appears in Collections:CIS Publication
SFX Query Show simple item record

Google ScholarTM

Check

Altmetric

Altmetric


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.