DocumentCode
2397543
Title
A rules-based intrusion detection and prevention framework against SIP malformed messages attacks
Author
Li, Hongbin ; Lin, Hu ; Yang, Xuehua ; Liu, Feng
fYear
2010
fDate
26-28 Oct. 2010
Firstpage
700
Lastpage
705
Abstract
SIP malformed messages detection and prevention has become an important indicator of high availability for SIP servers or IMS system. This paper describes the SIP malformed messages attacks, analyses sip protocol features and builds an abstract data model according to RFC 3261 protocol specification. The author presents an efficient intrusion detection and prevention framework against SIP malformed messages attacks. Using rules-based detection techniques, the paper improves detection performance against SIP malformed messages attacks and implements a detection algorithm in the kernel layer which improves the performance of the system.
Keywords
security of data; signalling protocols; telecommunication security; IMS system; Kernel layer; RFC 3261 protocol specification; SIP malformed messages attacks; SIP protocol; SIP servers; abstract data model; prevention framework; rule-based intrusion detection; SIP; data model; detection and prevention; malformed messages; protocol features;
fLanguage
English
Publisher
ieee
Conference_Titel
Broadband Network and Multimedia Technology (IC-BNMT), 2010 3rd IEEE International Conference on
Conference_Location
Beijing
Print_ISBN
978-1-4244-6769-3
Type
conf
DOI
10.1109/ICBNMT.2010.5705180
Filename
5705180
Link To Document