Font Size: a A A

The Implemtation Of IPv6 Distributed Security Protection System

Posted on:2007-06-08Degree:MasterType:Thesis
Country:ChinaCandidate:H ZhangFull Text:PDF
GTID:2178360185968238Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
As the surprising development of Internet, IPv4's address begins to become insufficient for the new comer; finally IETF proposed the new generation Internet protocol—IPv6. Compare with IPv4, IPv6 provides a series of new functions while fixes problems, such as address space extending, security mechanism and network auto configuration, etc.While the new version of Internet protocol bringing us big convenience, it also bring us security issue. Though IPv6 has improved security design based on IPv4, and it recommend use IPSec on any peer to peer communication, but in the period of transition from IPv4 to IPv6, more and more new security issue still came out.The Auto Combine of Intrusion Detection System (IDS) and Firewall is a hotspot in network security research. The IDS can dynamically detect intrusion to network, and generate warning timely; the Firewall can actively block the intrusion based on preset rules. IDS and Firewall construct the basis of network security system. Much works and efforts has been carried out in the field of Intrusion Protection System in IPv4 network, however, the field is still new for IPv6. Once the IPv6 backbone network is widely used, it will become very critical that how to guarantee the network security.This thesis proposes high performance distributed IPv4/IPv6 network security protection system. It places some Intrusion Detection Agent (IDSv6-Agent) in protect network, which could detect the attack and generate warning, and also places a centralize control server named BUPTSAM6, which could receive the warnings generated by...
Keywords/Search Tags:Network Security, IPv6, IDS, Firewall, auto-combine
PDF Full Text Request
Related items