Abstract | ||
---|---|---|
As Session Initiation Protocol is becoming widely used for the current IP telephony services due to its simplicity and powerful functions, vulnerabilities it exposes make it susceptible to various attacks especially signal based SIP-specific attacks. Based on the security issues of SIP, in this paper, we propose the design of an intrusion detection system combined with misuse and anomaly detection for these threats by a feedback mechanism. A timed HCPN model is utilized and suited to drive and simulate the IDS for SIP with four machines. Also some detection solutions for specific attacks are provided like two recall methods for CANCEL attack and so on. |
Year | DOI | Venue |
---|---|---|
2007 | 10.1109/ARES.2007.102 | ARES |
Keywords | Field | DocType |
anomaly detection,feedback mechanism,cancel attack,sip attack,current ip telephony service,hcpn model,session initiation protocol,powerful function,detection solution,intrusion detection system,sip-specific attack,information science,petri nets,power function,telephony,signal detection,feedback,packaging,intrusion detection,ip telephony,internet telephony,protocols | Anomaly detection,Petri net,Computer science,Computer security,Computer network,Telecommunication security,Session Initiation Protocol,Anomaly-based intrusion detection system,Intrusion detection system,Voice over IP | Conference |
ISBN | Citations | PageRank |
0-7695-2775-2 | 10 | 0.60 |
References | Authors | |
13 | 2 |
Name | Order | Citations | PageRank |
---|---|---|---|
Yanlan Ding | 1 | 10 | 0.60 |
Guiping Su | 2 | 13 | 2.36 |