An Overlay Network Based Collaborative Network Security System

HAN Fu-ye,CHEN Zhen,LIANG Yong,LI Jun
DOI: https://doi.org/10.3969/j.issn.1671-1122.2012.04.003
2012-01-01
Abstract:Internet security problem is still not well addressed as there are many network security event occurs,such as sending huge volumes of spam or launching Distributed Denial-of-Service(DDoS) attacks to victim targets.These attacks are launched by attackers who controlled a well-organized distributed network consists of a larger volume of hosts called bots.It is difficult to suppress such a distributed,widely,and automotive organized botnet without collaborative effort among the well deployed network security appliances(e.g.Unified Threat Management,i.e.UTM) in Internet.In this paper,we propose a practical Collaborative Internet Security System based on Overlay Network.We design a Peer-to-Peer communication protocol,a collaborative module,and retrofit security functions for UTM to virtually interconnect these UTMs to build a Security Overlay Network.In this Security Overlay Network,each UTM can communicate with each other to exchange security rules,events and signatures,and the huge size of signatures and security rules file can be disseminated easily,also ensure the security rules version in UTM will be consistency.Our design leverages existing technology to fully construct a comprehensive Collaborative Internet Security System for practical use.In the real deployment of our Security Overlay Network,several concrete applications,experiments and demos are also conducted and the results are also presented.
What problem does this paper attempt to address?