• ثبت نام
    • ورود به سامانه
    مشاهده مورد 
    •   صفحهٔ اصلی
    • نشریات انگلیسی
    • Scientia Iranica
    • Volume 17, Issue 2
    • مشاهده مورد
    •   صفحهٔ اصلی
    • نشریات انگلیسی
    • Scientia Iranica
    • Volume 17, Issue 2
    • مشاهده مورد
    JavaScript is disabled for your browser. Some features of this site may not work without it.

    Ontological Classi cation of Network Denial of Service Attacks: Basis for a Uni ed Detection Framework

    (ندگان)پدیدآور
    SADEGHIYAN, B.Varshovi, A.
    Thumbnail
    دریافت مدرک مشاهده
    FullText
    اندازه فایل: 
    2.260 مگابایت
    نوع فايل (MIME): 
    PDF
    نوع مدرک
    Text
    زبان مدرک
    English
    نمایش کامل رکورد
    چکیده
    In this paper we introduce the notion of a detection framework to facilitate the reasoning and cooperation process of detection and response systems. The presented framework de nes four dimensions as requirements to be satis ed: What to detect", Where to inspect", How to decide", and How to alert". The rst dimension tries to unify the understanding of the problem between systems. The second will introduce detection features and parameters. The third dimension exactly states how intelligent systems or expert knowledge should be deployed, while the task of the fourth is to unify the alert and message exchange format. To address the What to detect" aspect of our framework, we have considered a network denial of service and have presented an ontology which relates three taxonomies of DoS attacks, each from a di erent point of view: Attack Consequence, Attack Location and Attack Scenario. For scenario based taxonomy, we present a decision tree-like structure, which can be used as a base for attack detection. All these taxonomies are then related to each other in an ontology. An implementation of this ontology using Web Ontology Language (OWL) might help IETF's IDMEF to construct a base for a more accurate alert correlation.
    کلید واژگان
    Availability
    Denial of service
    Detection framework
    Ontology
    Taxonomy

    شماره نشریه
    2
    تاریخ نشر
    2010-12-01
    1389-09-10
    ناشر
    Sharif University of Technology
    سازمان پدید آورنده
    Department of Computer Engineering and IT,Amirkabir University of Technology
    Department of Computer Engineering and IT,Amirkabir University of Technology

    شاپا
    1026-3098
    2345-3605
    URI
    http://scientiairanica.sharif.edu/article_3352.html
    https://iranjournals.nlai.ir/handle/123456789/120969

    مرور

    همه جای سامانهپایگاه‌ها و مجموعه‌ها بر اساس تاریخ انتشارپدیدآورانعناوینموضوع‌‌هااین مجموعه بر اساس تاریخ انتشارپدیدآورانعناوینموضوع‌‌ها

    حساب من

    ورود به سامانهثبت نام

    آمار

    مشاهده آمار استفاده

    تازه ترین ها

    تازه ترین مدارک
    © کليه حقوق اين سامانه برای سازمان اسناد و کتابخانه ملی ایران محفوظ است
    تماس با ما | ارسال بازخورد
    قدرت یافته توسطسیناوب