Affiliation:
1. National Institute of Technical Teachers Training and Research, Chandigarh, India
2. National Institute of Technical Teachers Training and Research, Panchkula, India
Abstract
With the steady advancements in the technology, the network security is really important these days to protect information from attackers. In this research, the main focus is on designing strong firewall filtering rules so that detection of malicious code is achieved to an optimal level. A proposed framework is introduced to improve the performance parameters such as Server response time, Web content analysis, Bandwidth, and the performance of the Network traffic load. This research work defines a new set of IPtable rules achieved by modifying the kernel source code. This is done using OpenBSD kernel source code, which results in the formation of a mini-firewall. Therefore, a new hybrid approach is proposed by adding packet filtering rules and SNORT technology in mini-firewall for malicious activity detection. It is an efficient and practical technique which will be helpful to mitigate the malware attacks and secure LAMP server. Experimental analysis has been done to conclude that around 70-75% malicious activity can be reduced by using the proposed technique.
Reference24 articles.
1. Aliyev, R., Seo, D., & Lee, H. (2013). DROP-FAST: Defending against DDoS Attacks using Cloud Technology. In International Conference on Security and Management (pp. 1–7).
2. Firewall filtering rules analysis for anomalies detection
3. Cronin, B. & Wang, X. (2013). Pattern overlap in bit-parallel implementation of regular expression repetition quantifiers. International journal of Security and Networks, 8(4), 231-238.
4. Cyberciti. (n.d.). Configuration of firewall. Retrieved from https://www.cyberciti.biz/faq/howto-configure-setup-firewall-with-ufw-on-ubuntu-linux/
5. Damri, G., & Vidyarthi, D. (2016). Automatic Dynamic Malware Analysis Techniques for Linux Environment. IEEE International Conference on Computing for Sustainable Global Development (INDIACom) (pp. 825-830).