-
Improving Network Security Using Elliptic Curve Cryptosystem
-
-
-
• User interface
The user interface to an IDS enables a user to view output from the system or control the behavior of the system. In some systems, the user interface may equate to a ―manager,‖
―director,‖ or ―console‖ component.
iv. Architecture
The example of typical architecture is shown in figure. The sensors/agents components monitor and analyze activities. A management server is a centralized device that receives information from the sensors or agents and manages them. A database server is a repository for event information recorded by sensors, agents, and/or management servers. A console is a program that provides an interface for the IDS’susers and administrators.v. Intrusion prevention technology:
IPS is known as a new technology which is developed after the intrusion detection technology; it inherits all the advantages of intrusion detection intrusion prevention adds a module which is able to response the intrusion on its own initiative. It makes use of marks left by the intruders to effectively discover the illegal intrusion from external or internal.
Once discovered the aggressive behavior, it will cut off the connections actively. It is an extremely important part in network security.
vi. Characteristics of IPS
IPS is a system in which firewall is tightly coupled with IDS, and it can react to the changes of the network environment, IPS can find out intrusion action and prevent them, it is one of the promising technologies of the network security.
IPS is not roughly combining IDS with isolation of firewall. In order to improve on network security, IPS should satisfy the following conditions:
➢ IPS should run on a reliable and stable platform and should be one part of the
communication link.
➢ IPS based network should be supported by special hardware
➢ More exact and intelligent are to be employed to enhance the detection ability.
➢ IPS should become one part of the network applications, detect attack in real time, isolate intrusion in real time, and protect network actively.
On the basis of objects IPS protects and methods it uses, IPS is divided into three classes:
➢ IPS based host (HIPS)
➢ IPS based network (NIPS)
➢ Distributed IPS (DIPS)
Compared with IDS, NIPS has two new features: In-line and traffic isolation. It means IPS is placed in sole path which all traffic of the network detected must pass through, unlike IDS detecting traffic bypassed as shown below in the figure. IPS has suspicious traffic, which is impossible for IDS.
-
-
-
ABSRACT - [ Total Page(s): 1 ]ABSTRACTSecuring a network wired or wireless for network administrator has been a big challenges for network administrators in the present day of Internet usage. This project presents ECDSA Cryptosystem as a solution to the problem been faced by network administrators and Engineers. The Elliptic Curve Digital Signature Algorithm (ECDSA) is the elliptic curve analogue of the Digital Signature Algorithm (DSA) with the attractiveness that there is no sub exponential algorithm known to solve the ell ... Continue reading---
-
ABSRACT - [ Total Page(s): 1 ]ABSTRACTSecuring a network wired or wireless for network administrator has been a big challenges for network administrators in the present day of Internet usage. This project presents ECDSA Cryptosystem as a solution to the problem been faced by network administrators and Engineers. The Elliptic Curve Digital Signature Algorithm (ECDSA) is the elliptic curve analogue of the Digital Signature Algorithm (DSA) with the attractiveness that there is no sub exponential algorithm known to solve the ell ... Continue reading---