2010 3rd IEEE International Conference on Broadband Network and Multimedia Technology (IC-BNMT) 2010
DOI: 10.1109/icbnmt.2010.5705180
|View full text |Cite
|
Sign up to set email alerts
|

A rules-based intrusion detection and prevention framework against SIP malformed messages attacks

Abstract: SIP malformed messages detection and prevention has become an important indicator of high availability for SIP servers or IMS system. This paper describes the SIP malformed messages attacks, analyses sip protocol features and builds an abstract data model according to RFC 3261 protocol specification. The author presents an efficient intrusion detection and prevention framework against SIP malformed messages attacks. Using rules-based detection techniques, the paper improves detection performance against SIP ma… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2014
2014
2014
2014

Publication Types

Select...
2

Relationship

0
2

Authors

Journals

citations
Cited by 2 publications
(1 citation statement)
references
References 10 publications
(11 reference statements)
0
1
0
Order By: Relevance
“…With the development of computer network technology, network security, a growing problem, especially in the application layer attacks, such as SIP flood, SNMP attacks, the traditional firewall technology can not do anything [1] .The Safety iso lation system charged with the important task of filtering the traditional application-layer attacks and illegal new attacks, it is a problem to be solved necessarily that the safety isolation system how to report system status and network attack information to network manager in time and reliably, SNMP are the protocol which is widely used network management protocols, and have become a network standard. paper [2][3] proposes a model based on the SNMP protocol network management, With the character of embedded ARM devices designs the SNMP agent which has achieved the management of the ARM devices.…”
Section: Introductionmentioning
confidence: 99%
“…With the development of computer network technology, network security, a growing problem, especially in the application layer attacks, such as SIP flood, SNMP attacks, the traditional firewall technology can not do anything [1] .The Safety iso lation system charged with the important task of filtering the traditional application-layer attacks and illegal new attacks, it is a problem to be solved necessarily that the safety isolation system how to report system status and network attack information to network manager in time and reliably, SNMP are the protocol which is widely used network management protocols, and have become a network standard. paper [2][3] proposes a model based on the SNMP protocol network management, With the character of embedded ARM devices designs the SNMP agent which has achieved the management of the ARM devices.…”
Section: Introductionmentioning
confidence: 99%