透過您的圖書館登入
IP:18.189.2.122
  • 學位論文

動態負載平衡機制於分散式入侵偵測系統之研究與實作

The Design of Dynamic Load Balancing Mechanism for Distributed Intrusion Detection System

指導教授 : 李錫捷 郭文嘉
若您是本文的作者,可授權文章由華藝線上圖書館中協助推廣。

摘要


現今網路的發展極為迅速,並為整個社會帶來更為便利的生活,各種利用網路所能提供的服務也越來越多,但也造成了若使用的軟體本身便有漏洞或遭到有心人士放置後門程式,便會使得使用者的電腦容易遭到他人所入侵。近年來,網路駭客入侵事件層出不窮,且越來越受到大家所重視,因此有許多的網路安全防護措施開始發展,諸如防毒軟體、防火牆、與本研究所涉獵之入侵偵測系統來防衛自身的網路安全。 入侵偵測系統也非萬能,除了必須找出封包所代表的行為規則以用來判定是否為入侵之外,入侵偵測系統的效能能否負擔日與劇增的網路規模也是一個問題。當網路規模過大,單一入侵偵測系統無法負荷,便會有未受到分析的封包開始產生。本研究便是為了增進入侵偵測系統的效能,整體網路的封包分析率與正確率,於是導入了平行與分散式處理和負載平衡的觀念於其中,設計了一套針對分散式入侵偵測系統的負載平衡演算法,並與其它負載平衡演算法做比較,檢驗此演算法是否可行。

並列摘要


With the rapid advancement of the network technology, Internet services are better facilitating our daily life by providing easy and friendly access. However, the network security is becoming a critical issue. For example, the spyware problem is getting rampant by hijacking computers through software security holes. As a result, the demand for advanced network security has become the new challenge in the IT industry and has led to further development of anti-virus software, firewall and instruction detection system (IDS) to prevent hacking problems. IDS is not considered omnipotent, it must rely on the prerequisite of packets’ behavior rules that are difficult to define. Moreover, whether its capability could bear the growth of network scale with each passing day is another serious problem. IDS may begin to leak packets unanalyzed because of the packets’ amount exceed its processing capability. The main objective of this study is to improve the efficiency of IDS and promote the analysis rate and accuracy of the result. In this study, we developed a load balance algorithm based on the concept of parallel and distributed processing and load balancing. The algorithm was implemented on the well-known IDS – Snort. In addition, a number of experiments were conducted and promising results were derived which justified the efficiency of the algorithm developed.

延伸閱讀