Security has emerged as the biggest threat to information systems. System protection mechanisms such as access controls can be fooled by authorized but malicious users, masqueraders, and misfeasors. As a result, serious damage can be caused either because many intrusions are never detected or because the average detection latency is too long. In this paper, we define Intrusion Confinement thru isolation to address such security issue, its importance and finally present an isolation protocol.
한국어
보안은 정보 시스템들에 대한 가장 큰 위협요소로서 부각되고 있다. 접근 제어와 같은 시스템 보안 매커니즘은 악의의 사용자들이나, 위장자들, 불법 사용자들에 의해서 승인되어서 무력화될 수 있다. 그 결과, 많은 침입들이 전혀 탐지되지 않거나 평균적인 탐지 지연 시간이 너무 길거나 해서 심각한 피해가 초래되기도 한다. 본 논문에서는 격리를 통한 침입 제한을 정의하고 보안 이슈와 중요성을 언급하며, 마지막으로 격리 프로토콜을 설명한다.
목차
요 약 Abstract 1. Introduction 2. Importance of intrusion confinement 2.1 Suspicious behavior 3. Profile-based detection 3.1 Signature-based detection 3.2 Application of Intrusion Confinement support 4. The Isolation Protocol 5. Conclusion References
1. 보안공학에 대한 각종 조사 및 연구
2. 보안공학에 대한 응용기술 연구 및 발표
3. 보안공학에 관한 각종 학술 발표회 및 전시회 개최
4. 보안공학 기술의 상호 협조 및 정보교환
5. 보안공학에 관한 표준화 사업 및 규격의 제정
6. 보안공학에 관한 산학연 협동의 증진
7. 국제적 학술 교류 및 기술 협력
8. 보안공학에 관한 논문지 발간
9. 기타 본 회 목적 달성에 필요한 사업