Real Time Port Scan Detection for Internet Backbone
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
project topics
Active In SP
**

Posts: 2,492
Joined: Mar 2010
#1
22-04-2010, 12:02 AM


Real Time Port Scan Detection for Internet Backbone

Malware of many different varieties continue to spread through todayâ„¢s Internet at an alarming rate and volume. Port scanning, along with email and web page phishing, are the major channels of such propagation. This perpetual and unwanted scanning traffic is often aimed at discovering and infecting vulnerable hosts with viruses, leading eventually to botnets and criminal activities To understand, detect and eliminate such traffic is a vital part of enhancing Internet security.

Here we are proposing a Real Time Port Scan Detection for the Internet backbone.

Why Backbone ?

Aggregate traffic leads to better statistics
Backbone ISPs: value-add services to increase customer satisfaction.
Earlier scan blocking possible, safe guards network performance.
Challenges:

Backbone traffic unidirectional.
High speed links, OC-48, OC-192, volume of traffic very large, needs to be fast.
Intrusion detection is an overhead. Needs to be light weight.
The core of our system is the online implementation of a time-based access pattern Sequential hypothesis testing algorithm (TAPS). The intuition behind this algorithm is that a scanning hostâ„¢s access pattern demonstrates a high value for the ratio of No.ofdestinationIP/No of Ports in a given period of time. We denote this period of time as a time bin. This ratio is then used to perform a test for the hypothesis of whether a host is BENIGN or a SCANNER, across multiple time bins.
TAPS depends solely on counting the destination IPs and ports of a source, without relying on connection state information. Therefore, it can be used for detecting both TCP and UDP scans.

Comparison of Snort and TAPS

SNORT
Access pattern: No. of IPâ„¢s visited
Connectionless
Absolute thresholding
TAPS
Access pattern: IP/port ratio
Connectionless
Sequential Hypothesis Testing


Hardware Requirement

High Speed Disk Space 60 GB
Faster Memory >=2GB
Faster NIC (network interfacecard) 2 Nos (1 for Administrative Purpose)

Software Requirement

Java 1.6
Any Operating System
Use Search at http://topicideas.net/search.php wisely To Get Information About Project Topic and Seminar ideas with report/source code along pdf and ppt presenaion
Reply

Important Note..!

If you are not satisfied with above reply ,..Please

ASK HERE

So that we will collect data for you and will made reply to the request....OR try below "QUICK REPLY" box to add a reply to this page

Quick Reply
Message
Type your reply to this message here.


Image Verification
Please enter the text contained within the image into the text box below it. This process is used to prevent automated spam bots.
Image Verification
(case insensitive)

Possibly Related Threads...
Thread Author Replies Views Last Post
  Time Table Generator for Colleges Electrical Fan 24 18,231 02-01-2016, 04:22 PM
Last Post: mkaasees
  Detection and Localization of Multiple Spoofing Attackers in Wireless Networks seminar flower 4 1,822 02-06-2014, 09:51 AM
Last Post: seminar project topic
  ON THE EFFECTIVENESS OF MONITORING FOR INTRUSION DETECTION IN MOBILE AD HOC abstract seminar tips 2 817 09-05-2014, 09:43 AM
Last Post: seminar project topic
  Enhancing the Trust of Internet Routing With Lightweight Route Attestation Report project girl 2 966 10-01-2014, 04:16 PM
Last Post: seminar project topic
Thumbs Up The true Defination of Internet browser? nelson111 0 405 31-10-2013, 05:59 PM
Last Post: nelson111
  OBSTACLE DETECTION AND AVOIDANCE ROBOT seminar surveyer 9 11,469 28-10-2013, 10:50 PM
Last Post: Guest
  Efficient and Robust Detection of Duplicate Videos in a Large Database Report seminar projects maker 0 446 24-09-2013, 12:47 PM
Last Post: seminar projects maker
  IDS in Wired and Wireless Networks with port database Abstract seminar projects maker 0 411 19-09-2013, 03:45 PM
Last Post: seminar projects maker
  IMAGE SEGMENTATION BY USING EDGE DETECTION pdf seminar projects maker 0 446 12-09-2013, 02:16 PM
Last Post: seminar projects maker
  Report on Computerization Real Estate Management System study tips 0 288 07-09-2013, 03:49 PM
Last Post: study tips