Font Size: a A A

An Ipv6 Under Hacking Defense Technology Research

Posted on:2011-01-17Degree:MasterType:Thesis
Country:ChinaCandidate:X J AnFull Text:PDF
GTID:2208360308466249Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
With the widely application of Internet in every field and the development of network attack technology, people pay more attention to networks ecurity technology. Intrusion Prevention System (IPS) based of intrusion detection technology is an important element of the integrality of dynamic networks ecurity preventionin frastructure, and will be used widely.With the rapid development of internet, IPv4 has been already blocking the internet's growth, IPv6 will be a next generation of internet protocol, IPv4 and IPv6 will be coexist in a long time, because IPv4 is widely using now, So the security based on IPv4 and IPv6 has been the most important problem that need to solve. Therefore, it is great valuable in implementing network intrusion prevention system (NIPS) which based on IPv6 eviroment.Intrusion prevension technology is a new information security technology which could supply a firewall and the intrusion detect system in the information security domain. Not only does it detect intrusion events, but also hold back the intrusion happening and its development. With the transition process of IPv4 to IPv6, there will be new characteristics in network intrusion events, inevitably the original IPv4 Intrusion prevension technology will be changed to some extent.This thesis first describe the new features of IPv6, and its improvements compared with IPv4, through the classification of network attacks, the contents and characteristics of different attacks are analyzed. Then, the IPSEC and address mechanism introduced by IPv6 are analyzed and discussed, and their concrete improvements on network security are studied., then the possible new security issues under IPv6 new inviroment, and the changes of original security tools under IPv6 are analyzed. Next, based on the traditional Intrusion Detect System and Firewall, IPv6 Intrusion Prevension System is suggested. According to the division of system functions, key techniques moduls of the whole system are detailed respectively in the next part. At last, the deployment of this IPv6 IPS and its testing results are given.At the end of this paper, a summary of this thesis is given, a brief prospect for the future extended development on basis of existing system has been figured out.
Keywords/Search Tags:Network security, Firewall, Intrusion Detect, Intrusion prevention, IPv6
PDF Full Text Request
Related items