Load balancer system for an intrusion prevention system

Network access has been an essential resource in most businesses. This allows expensive supplies such as electronic storage and printers to be shared among users through network connection. It also allows information that is inaccessible before to be available through the internet. However, hackers...

Full description

Saved in:
Bibliographic Details
Main Authors: Pantola, Alexis V., Choa, Aileen N., Ipili, Antonio C., Tan, Kent Derrick C., Yan, Anthony O.
Format: text
Published: Animo Repository 2006
Subjects:
Online Access:https://animorepository.dlsu.edu.ph/faculty_research/9251
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: De La Salle University
id oai:animorepository.dlsu.edu.ph:faculty_research-10939
record_format eprints
spelling oai:animorepository.dlsu.edu.ph:faculty_research-109392023-05-11T02:05:46Z Load balancer system for an intrusion prevention system Pantola, Alexis V. Choa, Aileen N. Ipili, Antonio C. Tan, Kent Derrick C. Yan, Anthony O. Network access has been an essential resource in most businesses. This allows expensive supplies such as electronic storage and printers to be shared among users through network connection. It also allows information that is inaccessible before to be available through the internet. However, hackers have taken advantage of this technology to illegally gain access to the resources of many organizations. This resulted to network engineers developing network security devices like intrusion prevention system (IPS). IPS is a vast improvement from its predecessor the firewall. Unlike the firewall, IPS inspects the actual data of a network packet ensuring that it does not contain a malicious content. This malicious content may cause irreversible damage to information stored in a network system. However, since IPS performs extensive inspection of network packets, it generally causes delay when enormous number of packets is present in the network. This side effect is considered unacceptable to most network administrators. One of the remedies to this problem is to use multiple IPS such that the work of inspecting network packets is distributed. This solution requires the use of a load balancer. This paper discusses a load balancer system (LBS) that is used to distribute the work to several IPS. Implementation issues such as the integration of a port scan detector inside the LBS are also explained. Experiments on the systems show that the load of three IPS are distributed evenly. Each IPS has 66.6% load reduction when used together with the LBS. 2006-03-01T08:00:00Z text https://animorepository.dlsu.edu.ph/faculty_research/9251 Faculty Research Work Animo Repository Computer networks—Security measures Information Security
institution De La Salle University
building De La Salle University Library
continent Asia
country Philippines
Philippines
content_provider De La Salle University Library
collection DLSU Institutional Repository
topic Computer networks—Security measures
Information Security
spellingShingle Computer networks—Security measures
Information Security
Pantola, Alexis V.
Choa, Aileen N.
Ipili, Antonio C.
Tan, Kent Derrick C.
Yan, Anthony O.
Load balancer system for an intrusion prevention system
description Network access has been an essential resource in most businesses. This allows expensive supplies such as electronic storage and printers to be shared among users through network connection. It also allows information that is inaccessible before to be available through the internet. However, hackers have taken advantage of this technology to illegally gain access to the resources of many organizations. This resulted to network engineers developing network security devices like intrusion prevention system (IPS). IPS is a vast improvement from its predecessor the firewall. Unlike the firewall, IPS inspects the actual data of a network packet ensuring that it does not contain a malicious content. This malicious content may cause irreversible damage to information stored in a network system. However, since IPS performs extensive inspection of network packets, it generally causes delay when enormous number of packets is present in the network. This side effect is considered unacceptable to most network administrators. One of the remedies to this problem is to use multiple IPS such that the work of inspecting network packets is distributed. This solution requires the use of a load balancer. This paper discusses a load balancer system (LBS) that is used to distribute the work to several IPS. Implementation issues such as the integration of a port scan detector inside the LBS are also explained. Experiments on the systems show that the load of three IPS are distributed evenly. Each IPS has 66.6% load reduction when used together with the LBS.
format text
author Pantola, Alexis V.
Choa, Aileen N.
Ipili, Antonio C.
Tan, Kent Derrick C.
Yan, Anthony O.
author_facet Pantola, Alexis V.
Choa, Aileen N.
Ipili, Antonio C.
Tan, Kent Derrick C.
Yan, Anthony O.
author_sort Pantola, Alexis V.
title Load balancer system for an intrusion prevention system
title_short Load balancer system for an intrusion prevention system
title_full Load balancer system for an intrusion prevention system
title_fullStr Load balancer system for an intrusion prevention system
title_full_unstemmed Load balancer system for an intrusion prevention system
title_sort load balancer system for an intrusion prevention system
publisher Animo Repository
publishDate 2006
url https://animorepository.dlsu.edu.ph/faculty_research/9251
_version_ 1767197028356456448