A slow port scan attack detection mechanism based on fuzzy logic and a stepwise policy

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The slow port scan attack detection is the one of the important topics in the network security. We suggest an abnormal traffic control framework to detect slow port scan attacks using fuzzy rules. The abnormal traffic control framework acts as an intrusion prevention system to suspicious network traffic. It manages traffic with a stepwise policy: first decreasing network bandwidth and then discarding traffic. In this paper, we show that our abnormal traffic control framework effectively detects slow port scan attacks traffic using fuzzy rules and a stepwise policy.

Original languageEnglish
Title of host publication4th International Conference on Intelligent Environments (IE 08)
Edition541 CP
DOIs
StatePublished - 2008
Externally publishedYes
Event4th International Conference on Intelligent Environments, IE 08 - Seattle, WA, United States
Duration: 21 Jul 200822 Jul 2008

Publication series

NameIET Conference Publications
Number541 CP

Conference

Conference4th International Conference on Intelligent Environments, IE 08
Country/TerritoryUnited States
CitySeattle, WA
Period21/07/0822/07/08

Keywords

  • Abnormal traffic control framework
  • Attack detection
  • Fuzzy logic
  • Slow port scan
  • Stepwise Policy

Fingerprint

Dive into the research topics of 'A slow port scan attack detection mechanism based on fuzzy logic and a stepwise policy'. Together they form a unique fingerprint.

Cite this