Network Security Using Hybrid Port Knocking

Network Security Using Hybrid Port Knocking
复制标题

使用混合端口敲门的网络安全

DOI:
--
复制
发表时间:
2010
期刊:
影响因子:
--
通讯作者:
Ali Hadi
Ali Hadi
中科院分区:
--
文献类型:
--
作者:
H. Al;Ali Hadi

文献摘要

被引文献

相似文献

总结这项工作的主要目标是开发和评估一种新的PK技术的性能,它可以避免所有类型的端口攻击,并满足所有的网络安全要求。该技术利用了三个著名的概念,它们是:端口敲门(PK),隐写术和相互认证,因此,它被称为混合端口敲门(HPK)技术。它可以用于主机身份验证,使本地服务在端口扫描中不可见,提供额外的安全层,攻击者必须在访问或破坏任何重要内容之前渗透,作为具有已知未修补漏洞的服务的临时安全措施,并为集成安全性不足的传统或专有服务提供包装。所提出的技术的性能进行了评估,通过测量的平均认证时间,这也比较了一些目前使用的端口认证技术的平均认证时间。
Summary The main objective of this work is to develop and evaluate the performance of a new PK technique, which can avert all types of port attacks and meets all network security requirements. The new technique utilizes three wellknown concepts, these are: port-knocking (PK), steganography, and mutual authentication, therefore, it is referred to as the hybrid port-knocking (HPK) technique. It can be used for host authentication to make local services invisible from port scanning, provide an extra layer of security that attackers must penetrate before accessing or breaking anything important, act as a stopgap security measure for services with known un-patched vulnerabilities, and provide a wrapper for a legacy or proprietary services with insufficient integrated security. The performance of the proposed technique was evaluated by measuring the average authentication time, which also compared with the average authentication time for a number of currently used port authentication techniques.