International Journal of Advances in Electronics and Computer Science ( IJAECS )
A highly rated peer reviewed monthly International Journal
Editor-in-Chief : Dr. P. Suresh
Contact Person : Technical Editor
Contact Mail : [email protected]  
Current Issue : Volume-11,Issue-2  ( Feb, 2024 ) View More
Journal Impact Factor : 2.68 View More

Journal Info
Publisher:IRAJ
ISSN (p): 2394-2835
Issues /Year :12
Stay up-to-date
Register your interests and receive email alerts tailored to your needs
Follow us
facebook twitter linked in

Paper Detail


Paper Title
Dual Safeguard: IDS To Enhance Security Of Multitier Web Applications

Abstract
Internet services and applications are very important part of daily life.Due to there increasing use and complexity they move to multitier architecture. Most of intrusion Detection Systems (IDSs) observes the network packets individually within both the web server and the database system. multitier Anomaly Detection (AD) systems generate models of network behavior for both web and database network interactions. In such architectures, the back-end database server is often protected behind a firewall while the web servers are remotely accessible over the Internet. Unfortunately, though they are protected from direct remote attacks, the back-end systems are susceptible to attacks that use web requests as a means to exploit the back end. we propose IDS called as Dual safeguard system that models the network behavior of user sessions across both front-end web (HTTP) requests and back-end database (SQL) queries. This container-based and session- separateed architecture enhances the security and also provides the isolation between the information flows that are separated in each container session. To detect the abnormal behaviors on a session/client level, Casual Mapping profile model is developed to map between the web server requests and the subsequent DB queries. Using Dual safeguard we will able to detect intrusion with 100%accuracy and 0%false positive for static web applications and0.4%false positive for dynamic web application. Keywords— Container Architecture, Mapping model, Web services, Multi-Tier web application, Virtualization.


Author - Kalyani Shirudkar, Dilip Motwani

Published : Volume-3,Issue-6  ( Jun, 2016 )


DOIONLINE Number - IJAECS-IRAJ-DOIONLINE-4796   View Here

| PDF |
Viewed - 51
| Published on 2016-07-12
   
   
PAST ISSUES
Volume-11,Issue-1  ( Jan, 2024 )
Volume-10,Issue-12  ( Dec, 2023 )
Volume-10,Issue-11  ( Nov, 2023 )
Volume-10,Issue-10  ( Oct, 2023 )
Volume-10,Issue-9  ( Sep, 2023 )
Volume-10,Issue-8  ( Aug, 2023 )
Volume-10,Issue-7  ( Jul, 2023 )
Volume-10,Issue-6  ( Jun, 2023 )
Volume-10,Issue-5  ( May, 2023 )
Volume-10,Issue-4  ( Apr, 2023 )
Journal Indexed