SDN-Based Intrusion Prevention System for Science DMZ 


Vol. 40,  No. 6, pp. 1070-1080, Jun.  2015


PDF
  Abstract

In this paper, we introduce an SDN-based intrusion prevention system for more secure Science DMZ with no performance limits. The proposed system is structured with intrusion-prevention, intrusion-detection, and prevention-decision subsystems which are physically distributed but informationally connected by an SDN interface. The functional distribution and the application of SDN technology increase the flexibility and extensibility of the proposed system and prevent performance degradation possibly caused by network security equipments on Science DMZ. We verified the feasibility and performance of the proposed system over a testbed set up at KREONET.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

J. Jo, H. Jang, K. Lee, J. Kong, "SDN-Based Intrusion Prevention System for Science DMZ," The Journal of Korean Institute of Communications and Information Sciences, vol. 40, no. 6, pp. 1070-1080, 2015. DOI: .

[ACM Style]

Jinyong Jo, Heejin Jang, Kyungmin Lee, and JongUk Kong. 2015. SDN-Based Intrusion Prevention System for Science DMZ. The Journal of Korean Institute of Communications and Information Sciences, 40, 6, (2015), 1070-1080. DOI: .

[KICS Style]

Jinyong Jo, Heejin Jang, Kyungmin Lee, JongUk Kong, "SDN-Based Intrusion Prevention System for Science DMZ," The Journal of Korean Institute of Communications and Information Sciences, vol. 40, no. 6, pp. 1070-1080, 6. 2015.