Universiti Teknologi Malaysia Institutional Repository

The optimization of stepping stone detection: packet capturing steps

Omar, Mohd. Nizam and Maarof, Mond. Aizaini and Zainal, Anazida (2006) The optimization of stepping stone detection: packet capturing steps. Jurnal Teknologi D, 44 . pp. 1-14. ISSN 0127-9696

[img] PDF - Published Version
237kB

Official URL: http://dx.doi.org/10.11113/jt.v44.371

Abstract

This paper proposes an optimized packet capturing stone detection algorithm that can shorten the response time of overall response mechanism. The aim of the research is to improve the packet capturing step in stepping stone algorithm, thus, improve the response from overall detection and response system. The proposed method is to use small size of user buffer and kernel buffer. Experiments were conducted with two types of packet stream; i) 10 kbps and ii) 10 000 kbps data generated by Tfgen (packet generator) tools and nine combinations of different buffer sizes for each network packet stream were tested. Results from the experiment were analyzed. From the result, it is proven that the proposed method (by using small size of buffer) gives better result. The research concludes that by using the proposed method, the response time can be improved.

Item Type:Article
Uncontrolled Keywords:IDS, IRS, detecting stepping stones, time gap, optimization
Subjects:Q Science > QA Mathematics > QA75 Electronic computers. Computer science
Divisions:Computer Science and Information System
ID Code:3050
Deposited By: Suhaili Sudin
Deposited On:17 May 2007 03:05
Last Modified:26 Apr 2022 14:49

Repository Staff Only: item control page