Design and implementation of intrusion detection system based on the protocol analysis

Bin Liu · Information technology newsletter · 2007

The paper designs a network IDS framework.It deeply probes into the packet capture module,packet filter module and protocol analysis module of a IDS.It implements a routine to analyze the important protocols in the TCP/IP protocol stack,such as Ethernet,IP,TCP,UDP and HTTP,on the basis of the Winpcap library and its BPF mechanism to capture and filter data on the network interface card.

Read the paper · More papers on PaperTik