Proceedings of the Fifth IEEE International Symposium on Signal Processing and Information Technology, 2005.
DOI: 10.1109/isspit.2005.1577128
|View full text |Cite
|
Sign up to set email alerts
|

Specification-based intrusion detection for H.323-based voice over IP

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
5
0

Publication Types

Select...
6
2

Relationship

0
8

Authors

Journals

citations
Cited by 10 publications
(5 citation statements)
references
References 4 publications
0
5
0
Order By: Relevance
“…Initially, it was intended for execution monitoring of security-critical programs in distributed system [10]. However, it has been applied to routing protocols such AODV [12], [13], [14] or OSLR [15], DNP3 protocol [16], [17], [18] Voice over IP [19], [20], [21] and other areas of CPS as discussed in section III. A practical experience in the use of specification-based intrusion is presented by Uppuluri and Sekar in [11].…”
Section: B Specification-based Intrusion Detectionmentioning
confidence: 99%
“…Initially, it was intended for execution monitoring of security-critical programs in distributed system [10]. However, it has been applied to routing protocols such AODV [12], [13], [14] or OSLR [15], DNP3 protocol [16], [17], [18] Voice over IP [19], [20], [21] and other areas of CPS as discussed in section III. A practical experience in the use of specification-based intrusion is presented by Uppuluri and Sekar in [11].…”
Section: B Specification-based Intrusion Detectionmentioning
confidence: 99%
“…H. Sengar et al [14] present a protocol state machine based IDS for Voice over IP (VoIP), which identifies any deviation from normal protocol behaviors, and hence, could detect unknown attacks. P. Truong et al [15] also propose an FSM based intrusion detection model for H.323-based VoIP. In [16], state machines based intrusion detection is proposed for Advanced Metering Infrastructures (AMI) in Smart Grids that includes the devicelevel state machine for smart meters and the application-level state machine for the American National Standards Institute (ANSI) C12.22 protocol.…”
Section: Related Workmentioning
confidence: 99%
“…Truong et al [124] describe a rules-based intrusion detection system for H.323 that uses an FSM model to detect unexpected messages, aimed at identifying illegitimate RAS (Registration, Admission and Status) messages being forwarded to a H.323 gatekeeper.…”
Section: ) Service Abuse (7 Items)mentioning
confidence: 99%