Please use this identifier to cite or link to this item: http://repositorio.ufpa.br:8080/jspui/handle/2011/5613
Title: IPSFlow: Um framework para Sistema de Prevenção de Intrusão baseado em Redes Definidas por Software
metadata.dc.creator: NAGAHAMA, Fábio Yu
metadata.dc.contributor.advisor1: CERQUEIRA, Eduardo Coelho
Keywords: Redes de computadores
IPSFlow
Segurança de dados
SDNs
IDS
IPS
Rede definida por software
Framework
Issue Date: 9-Oct-2013
Publisher: Universidade Federal do Pará
Citation: NAGAHAMA, Fábio Yu. IPSFlow: Um framework para Sistema de Prevenção de Intrusão baseado em Redes Definidas por Software. 2013. 79 f. Dissertação (Mestrado) - Universidade Federal do Pará, Instituto de Tecnologia, Belém, 2013. Programa de Pós-Graduação em Engenharia Elétrica.
Abstract: Intrusion Detection and Prevention Systems (IDSs/IPSs) are well known tools and well enshrined in the world of information security. However, the lack of integration with network equipment, such as switches and routers, tends to limit the performance of these tools leads to require a proper dimensioning of hardware resources such as processor, memory and high-speed network interfaces used to implement them. Faced with several limitations encountered by researchers and network administrators, the concept of Software Defined Network (SDN), that separates the data and control planes, emerged allowing to adapt the operation of the network according to their needs. Thus, due to standardization and flexibility offered by SDNs, and the limitations presented by IDSs, this dissertation proposes IPSFlow, a framework that uses a network based on the SDN architecture, and the OpenFlow protocol, to create an IPS with wide coverage that blocks a malicious traffic in the equipment closer to the origin. To validate the framework, experiments in the virtual Mininet environment were conducted using Snort as IDS to analyze scanning traffic generated by Nmap from a host to another. The results show that the IPSFlow worked as planned by blocking almost 85% of scanning traffic.
URI: http://repositorio.ufpa.br/jspui/handle/2011/5613
Appears in Collections:Dissertações em Engenharia Elétrica (Mestrado) - PPGEE/ITEC

Files in This Item:
File Description SizeFormat 
Dissertacao_IpsflowFrameworkSistema.pdf5,77 MBAdobe PDFView/Open


This item is licensed under a Creative Commons License Creative Commons