Title :
A rules-based intrusion detection and prevention framework against SIP malformed messages attacks
Author :
Li, Hongbin ; Lin, Hu ; Yang, Xuehua ; Liu, Feng
Abstract :
SIP malformed messages detection and prevention has become an important indicator of high availability for SIP servers or IMS system. This paper describes the SIP malformed messages attacks, analyses sip protocol features and builds an abstract data model according to RFC 3261 protocol specification. The author presents an efficient intrusion detection and prevention framework against SIP malformed messages attacks. Using rules-based detection techniques, the paper improves detection performance against SIP malformed messages attacks and implements a detection algorithm in the kernel layer which improves the performance of the system.
Keywords :
security of data; signalling protocols; telecommunication security; IMS system; Kernel layer; RFC 3261 protocol specification; SIP malformed messages attacks; SIP protocol; SIP servers; abstract data model; prevention framework; rule-based intrusion detection; SIP; data model; detection and prevention; malformed messages; protocol features;
Conference_Titel :
Broadband Network and Multimedia Technology (IC-BNMT), 2010 3rd IEEE International Conference on
Conference_Location :
Beijing
Print_ISBN :
978-1-4244-6769-3
DOI :
10.1109/ICBNMT.2010.5705180