2011•Chinese Journal of ComputersRequires access

Application Layer Real-time Proactive Defense System Based on Application Layer Protocol Analysis

Xie Bai

Open publisher page 1 citations

Abstract

Proactive defense is a prevalent topic in current research field of network security.Existing proactive defense techniques mainly detect attacks from network layer and transport layer.Since most new attacks are based on application layer protocols and don't present significant difference in network traffic,it is difficult for existing proactive defense techniques to effectively detect such application layer attacks without special techniques.Therefore,the research on proactive defense of application layer becomes very important.This paper presents a risk real-time evaluation method for application layer based on hidden semi-Markov model.This method evaluates the application layer risk by analyzing network traffic.Based on this risk evaluation method and application layer protocol analysis,this paper presents a real-time proactive defense system for application layer.When user's behavior is at risk,the system queues the user's packets according to the risk indicator.By this means,the proposed system can automatically restrict each user's anomalous behavior,and achieve the application layer proactive defense.The final experiment results validate the performance of the system.

About this research paper

What this paper is about

Proactive defense is a prevalent topic in current research field of network security.Existing proactive defense techniques mainly detect attacks from network layer and transport layer.Since most new attacks are based on application layer protocols and don't present significant difference in network traffic,it is difficult for existing proactive defense techniques to effectively detect such application layer attacks without special techniques.Therefore,the research on proactive defense of application layer becomes very important.This paper presents a risk real-time evaluation method for application layer based on hidden semi-Markov model.This method evaluates the application layer risk by analyzing network traffic.Based on this risk evaluation method and application layer protocol analysis,this paper presents a real-time proactive defense system for application layer.When user's behavior is at risk,the system queues the user's packets according to the risk indicator.By this means,the proposed system can automatically restrict each user's anomalous behavior,and achieve the application layer proactive defense.The final experiment results validate the performance of the system.

Why it matters

OpenAlex reports 1 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Proactive defense is a prevalent topic in current research field of network security.Existing proactive defense techniques mainly detect attacks from network layer and transport layer.Since most new attacks are based on application layer protocols and don't present significant difference in network traffic,it is difficult for existing proactive defense techniques to effectively detect such application layer attacks without special techniques.Therefore,the research on proactive defense of application layer becomes very important.This paper presents a risk real-time evaluation method for application layer based on hidden semi-Markov model.This method evaluates the application layer risk by analyzing network traffic.Based on this risk evaluation method and application layer protocol analysis,this paper presents a real-time proactive defense system for application layer.When user's behavior is at risk,the system queues the user's packets according to the risk indicator.By this means,the proposed system can automatically restrict each user's anomalous behavior,and achieve the application layer proactive defense.The final experiment results validate the performance of the system.

Key concepts: Computer science, Application layer, Network layer, Layer (electronics), Computer network, Transport layer, Network packet, Protocol (science)

Related papers

Back to paper searchBrowse research topicsOriginal source
Application Layer Real-time Proactive Defense System Based on Application Layer Protocol Analysis — Research Paper | ScholarLens