Our studies on Intrusion Detection Systems underlined that current IDSs provide high level security to an agency from the outside but lack in discovering intrusions from inside the agency itself. In this sense, one of the weaknesses is represented by the implementation of ISO/OSI layer 2. In this paper, we present the state of our research activity, presenting the current state of art and our IDS based on ArpWatch and ArpAlert, which aim is to provide a stronger defence from inner intrusions. Finally, we present the result of a set of testbeds made on National Research Council intranet.

Improvements in physical intrusion detection on LAN

Merlo A;
2008-01-01

Abstract

Our studies on Intrusion Detection Systems underlined that current IDSs provide high level security to an agency from the outside but lack in discovering intrusions from inside the agency itself. In this sense, one of the weaknesses is represented by the implementation of ISO/OSI layer 2. In this paper, we present the state of our research activity, presenting the current state of art and our IDS based on ArpWatch and ArpAlert, which aim is to provide a stronger defence from inner intrusions. Finally, we present the result of a set of testbeds made on National Research Council intranet.
File in questo prodotto:
File Dimensione Formato  
PRISE-2008.pdf

non disponibili

Licenza: NON PUBBLICO - Accesso privato/ristretto
Dimensione 1.1 MB
Formato Adobe PDF
1.1 MB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14252/1203
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
social impact