• Search Research Projects
  • Search Researchers
  • How to Use
  1. Back to previous page

A Learning Based Illegal Access Detection and Prevention System for Next Generation Network

Research Project

Project/Area Number 15300011
Research Category

Grant-in-Aid for Scientific Research (B)

Allocation TypeSingle-year Grants
Section一般
Research Field Computer system/Network
Research InstitutionTohoku University

Principal Investigator

KATO Nei  Tohoku University, Graduate School of Information Sciences, Professor, 大学院・情報科学研究科, 教授 (00236168)

Co-Investigator(Kenkyū-buntansha) OHTA Kohei  Cyber Solutions, Inc., Senior Researcher, 主任研究員
Project Period (FY) 2003 – 2004
Project Status Completed (Fiscal Year 2004)
Budget Amount *help
¥6,200,000 (Direct Cost: ¥6,200,000)
Fiscal Year 2004: ¥2,800,000 (Direct Cost: ¥2,800,000)
Fiscal Year 2003: ¥3,400,000 (Direct Cost: ¥3,400,000)
KeywordsIllegal Access / Security / NIDS / Next generation network / DoS / ネットワークセキュリティ / 学習型検出 / IDS / 主成分分析
Research Abstract

Recently, NIDS (Network-based Intrusion Detection System) has played an important role in Internet security system. However, the pattern matching technique used in NIDS is weak for new-type virus or unauthorized access, intentionally evasion act and is not expectable for next generation internet protocol IPv6 equipped with encryption. In this study, we propose a new access detection system which have learning function on subnetwork. Our goal is to develop next generation access detection system which include unknown illegal access detection structure, cooperate with NIDS and adapt to IPv6.
In this research, we discussed about DoS (Denial of Service) attack that is difficult to detect in pattern matching technique and developed the system that learn and detect DoS attack This system exploit that the normal access follows the TCP congestion avoidance mechanism and will send test feedback to the source that being suspected of unauthorized access to decrease the transmission rate. By detecting the source's response, we can determine whether it is unauthorized access or not.
Furthermore, we develop the software necessary for sharing information of detected unauthorized access among subnet NIDS and neighboring NIDS. This software makes it possible to block the unauthorized access extensively and we construct unauthorized access detection and extermination system combined with detection system. We had performed experiments over real network. As a result, we verified that detection-system is able to detect attack rapidly and accurately and we can realize high detection rate and low false negative rate.

Report

(3 results)
  • 2004 Annual Research Report   Final Research Report Summary
  • 2003 Annual Research Report
  • Research Products

    (12 results)

All 2005 2004 Other

All Journal Article (9 results) Publications (3 results)

  • [Journal Article] On-demand media streaming to hybrid wired/wireless networks over quasi-geostationary satellite systems2005

    • Author(s)
      Tarik Taleb
    • Journal Title

      Elsevier Journal on Computer Networks 47・2

      Pages: 287-306

    • Description
      「研究成果報告書概要(和文)」より
    • Related Report
      2004 Annual Research Report 2004 Final Research Report Summary
  • [Journal Article] A Dummy Segment Based Bandwidth Probing Technique to Enhance the Performance of TCP over Heterogeneous Networks2005

    • Author(s)
      Tarik Taleb
    • Journal Title

      IEEE Wireless Communications and Networking Conference

    • Description
      「研究成果報告書概要(和文)」より
    • Related Report
      2004 Final Research Report Summary
  • [Journal Article] On-demand media streaming to hybrid wired/wireless networks over quasi-geostationary satellite systems2005

    • Author(s)
      Tarik Taleb
    • Journal Title

      Elsevier Journal on Computer Networks Vol.47,No.2

      Pages: 287-306

    • Description
      「研究成果報告書概要(欧文)」より
    • Related Report
      2004 Final Research Report Summary
  • [Journal Article] A Dummy Segment Based Bandwidth Probing Technique to Enhance the Performance of TCP over Heterogeneous Networks2005

    • Author(s)
      Tarik Taleb
    • Journal Title

      IEEE Wireless Communications and Networking Conference (印刷中)

    • Related Report
      2004 Annual Research Report
  • [Journal Article] A Round-Trip Time-Based Prevention Technique to Secure LEO Satellite Networks from Denial-of-Service Attacks2004

    • Author(s)
      Tarik Taleb
    • Journal Title

      2004 IEEE 60^<th> Vehicular Technology Conference

    • Description
      「研究成果報告書概要(和文)」より
    • Related Report
      2004 Final Research Report Summary
  • [Journal Article] A Recursive, Explicit and Fair Method to Efficiently and Fairly Adjust TCP Windows in Satellite Networks2004

    • Author(s)
      Tarik Taleb
    • Journal Title

      2004 IEEE International Conference on Communications 7

      Pages: 4268-4274

    • Description
      「研究成果報告書概要(和文)」より
    • Related Report
      2004 Annual Research Report 2004 Final Research Report Summary
  • [Journal Article] A Round-Trip Time-Based Prevention Technique to Secure LEO Satellite Networks from Denial-of-Service Attacks2004

    • Author(s)
      Tarik Taleb
    • Journal Title

      IEEE 60^<th> Vehicular Technology Conference

    • Description
      「研究成果報告書概要(欧文)」より
    • Related Report
      2004 Final Research Report Summary
  • [Journal Article] A Recursive, Explicit and Fair Method to Efficiently and Fairly Adjust TCP Windows in Satellite Networks2004

    • Author(s)
      Tarik Taleb
    • Journal Title

      IEEE International Conference on Communications Vol.7

      Pages: 4268-4274

    • Description
      「研究成果報告書概要(欧文)」より
    • Related Report
      2004 Final Research Report Summary
  • [Journal Article] A Round-Trip Time-Based Prevention Technique to Secure LEO Satellite Networks from Denial-of-Service Attacks2004

    • Author(s)
      Tarik Taleb
    • Journal Title

      2004 IEEE 60th Vehicular Technology Conference (CD-ROM)

    • Related Report
      2004 Annual Research Report
  • [Publications] 和泉勇治: "異常検知のためのネットワーク特徴量抽出法に関する一考察"2004年電子情報通信学会総合大会講演論文集. SB-4-1. S-27 (2004)

    • Related Report
      2003 Annual Research Report
  • [Publications] 太田耕平: "不正・障害検知のためのトラフィックの安全性分析"2004年電子情報通信学会総合大会講演論文集. SB-4-2. S-29 (2004)

    • Related Report
      2003 Annual Research Report
  • [Publications] 加藤寧: "ユーザトラヒックパターンの特徴付けによるUDP Flooding抑制方式"2004年電子情報通信学会総合大会講演論文集. B-7-14. 223 (2004)

    • Related Report
      2003 Annual Research Report

URL: 

Published: 2003-04-01   Modified: 2016-04-21  

Information User Guide FAQ News Terms of Use Attribution of KAKENHI

Powered by NII kakenhi