Network-based intrusion prevention system prototype with multi-detection
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F25083341%3A_____%2F14%3A%230000009" target="_blank" >RIV/25083341:_____/14:#0000009 - isvavai.cz</a>
Result on the web
<a href="http://www.certicon.cz/ccips" target="_blank" >http://www.certicon.cz/ccips</a>
DOI - Digital Object Identifier
—
Alternative languages
Result language
angličtina
Original language name
Network-based intrusion prevention system prototype with multi-detection
Original language description
The presented software implements a direct technical solution of our utility model in the field of computer network security. The network intrusion-protection system (NIPS) aims to improve detection potential in the area of zero-day attacks and to leverage advanced known-threats revelation and active network-perimeter protection. The solution comprises several detection systems engagement, obtaining their outputs in the IDMEF format, via direct database access or likewise, processing these outputs withits own rule system according to given configuration, and enforcing the results of the rule-system processing at the protected-network entry point (firewall/router). The detection capabilities of the NIPS would be greatly enhanced when a combination of both the signature-based (looking for repeated attack-specific patterns in the network traffic) and the behavioral (Network Behavior Analysis ? searching for statistical anomalies of the traffic) detection methods are employed.
Czech name
—
Czech description
—
Classification
Type
R - Software
CEP classification
IN - Informatics
OECD FORD branch
—
Result continuities
Project
<a href="/en/project/VG20122014086" target="_blank" >VG20122014086: Applied research of a metod of an efficient management of network security of data centers, servers and cloud services verified by practical measurements</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Others
Publication year
2014
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Internal product ID
CCIPS
Technical parameters
Jádro - platforma Linux, C/C++; Webové služby ? RESTEasy, Java, XML, Uzavřena smlouva o využití výsledku se spolupříjemcem dotace spol. CISCO Systems s.r.o., IČ 63979462, uzavřena 30.12.2014, Odpovědná osoba ing.M.Klíma, Certicon a.s., Evropská 2758/11,16000, Praha 6, tel.224904191, martin.klima@certicon.cz
Economical parameters
zvýšení zisku
Owner IČO
25083341
Owner name
CertiCon a.s.