DocumentCode
1631639
Title
Towards more sophisticated ARP Spoofing detection/prevention systems in LAN networks
Author
Al-Hemairy, Mohamed ; Amin, Saad ; Trabelsi, Zouheir
Author_Institution
Sch. of Inf., British Univ. in Dubai (BUiD), Dubai, United Arab Emirates
fYear
2009
Firstpage
1
Lastpage
6
Abstract
The address resolution protocol (ARP) is used by computers to map network addresses (IP) to physical addresses [MAC] and we can´t imagine a communications between networks without the support of ARP protocol. However, ARP had been misused by many malicious hosts for illegitimate penetration; ARP Spoofing is one example for such illegal access. ARP Spoofing can enable malicious hosts to perform man-in-the-middle attacks [MiM] as well as a denial of service attacks [DoS]. Unfortunately, ARP Spoofing has not been focused by security experts or solutions, e.g. intrusion detection systems or intrusion protection systems [IDS/IPS]. In this research we evaluate the most famous & expensive detection and prevention [IDS/IPS] systems for detecting all types of ARP spoofing attacks and introduce an algorithm which can be implemented in IDS/IPS systems to enhance it´s security.
Keywords
IP networks; access protocols; computer network security; local area networks; IP addresses; LAN network prevention system; MAC; address resolution protocol; denial of service attacks; intrusion detection systems; intrusion protection systems; man-in-the-middle attacks; network addresses; sophisticated ARP spoofing detection system; Access protocols; Computer crime; Computer networks; Image resolution; Intrusion detection; Local area networks; Media Access Protocol; Physics computing; Protection; Security;
fLanguage
English
Publisher
ieee
Conference_Titel
Current Trends in Information Technology (CTIT), 2009 International Conference on the
Conference_Location
Dubai
Print_ISBN
978-1-4244-5754-0
Electronic_ISBN
978-1-4244-5756-4
Type
conf
DOI
10.1109/CTIT.2009.5423112
Filename
5423112
Link To Document