Network performance testing on VM based autonomous web server

As online services increasingly play vital roles in modern society, the possibilities and opportunities offered are limitless, unfortunately, so too are the risks and chances of malicious intrusions. Intrusion Detection Systems (IDSs) has been widely used as an important component in protecting onli...

Full description

Bibliographic Details
Main Authors: Mas'ud, M. Zaki, Yaacob, Asrul Hadi, Ahmad, Nazrul Muhaimin
Format: Book Section
Language:English
Published: IEEE 2006
Subjects:
Online Access:http://shdl.mmu.edu.my/2146/
http://shdl.mmu.edu.my/2146/1/Network%20performance%20testing%20on%20VM%20based%20autonomous%20web%20server.pdf
_version_ 1848789975880957952
author Mas'ud, M. Zaki
Yaacob, Asrul Hadi
Ahmad, Nazrul Muhaimin
author_facet Mas'ud, M. Zaki
Yaacob, Asrul Hadi
Ahmad, Nazrul Muhaimin
author_sort Mas'ud, M. Zaki
building MMU Institutional Repository
collection Online Access
description As online services increasingly play vital roles in modern society, the possibilities and opportunities offered are limitless, unfortunately, so too are the risks and chances of malicious intrusions. Intrusion Detection Systems (IDSs) has been widely used as an important component in protecting online service towards web attacks and evasions. Yet, today's architectures for intrusion detection force the IDS designer to make a difficult choice to place IDS, so that it can protect itself from a direct attack. To address these challenges, this paper introduces a novel framework to safeguard IDS from a direct attack. Simply called Zero Administrative Server (ZAS), the system incorporates IDS in a Virtual Machine (VM) environment. VM offers strong isolation for IDS from the monitored services and provides significant resistance to malicious attacks. Moreover, this VM based WWW server has the ability to monitor the network traffic to the running services; analyse the information obtained and detect the intrusion; alienate the intruder from the services; and reconstruct the corrupted data or damaged files caused by the evasion. In this paper, we demonstrate ZAS by exposing it to several attacking tools as well as to show the effects it takes on the network performance in terms of TCP throughput and application-to-application round trip time.
first_indexed 2025-11-14T18:05:16Z
format Book Section
id mmu-2146
institution Multimedia University
institution_category Local University
language English
last_indexed 2025-11-14T18:05:16Z
publishDate 2006
publisher IEEE
recordtype eprints
repository_type Digital Repository
spelling mmu-21462015-04-27T08:13:51Z http://shdl.mmu.edu.my/2146/ Network performance testing on VM based autonomous web server Mas'ud, M. Zaki Yaacob, Asrul Hadi Ahmad, Nazrul Muhaimin QA75.5-76.95 Electronic computers. Computer science As online services increasingly play vital roles in modern society, the possibilities and opportunities offered are limitless, unfortunately, so too are the risks and chances of malicious intrusions. Intrusion Detection Systems (IDSs) has been widely used as an important component in protecting online service towards web attacks and evasions. Yet, today's architectures for intrusion detection force the IDS designer to make a difficult choice to place IDS, so that it can protect itself from a direct attack. To address these challenges, this paper introduces a novel framework to safeguard IDS from a direct attack. Simply called Zero Administrative Server (ZAS), the system incorporates IDS in a Virtual Machine (VM) environment. VM offers strong isolation for IDS from the monitored services and provides significant resistance to malicious attacks. Moreover, this VM based WWW server has the ability to monitor the network traffic to the running services; analyse the information obtained and detect the intrusion; alienate the intruder from the services; and reconstruct the corrupted data or damaged files caused by the evasion. In this paper, we demonstrate ZAS by exposing it to several attacking tools as well as to show the effects it takes on the network performance in terms of TCP throughput and application-to-application round trip time. IEEE 2006-06 Book Section NonPeerReviewed text en http://shdl.mmu.edu.my/2146/1/Network%20performance%20testing%20on%20VM%20based%20autonomous%20web%20server.pdf Mas'ud, M. Zaki and Yaacob, Asrul Hadi and Ahmad, Nazrul Muhaimin (2006) Network performance testing on VM based autonomous web server. In: International Conference on Computing & Informatics, 2006. ICOCI '06. IEEE, pp. 235-240. ISBN 978-1-4244-0220-5 http://ieeexplore.ieee.org/xpl/articleDetails.jsp?arnumber=5276470 10.1109/ICOCI.2006.5276470 10.1109/ICOCI.2006.5276470 10.1109/ICOCI.2006.5276470
spellingShingle QA75.5-76.95 Electronic computers. Computer science
Mas'ud, M. Zaki
Yaacob, Asrul Hadi
Ahmad, Nazrul Muhaimin
Network performance testing on VM based autonomous web server
title Network performance testing on VM based autonomous web server
title_full Network performance testing on VM based autonomous web server
title_fullStr Network performance testing on VM based autonomous web server
title_full_unstemmed Network performance testing on VM based autonomous web server
title_short Network performance testing on VM based autonomous web server
title_sort network performance testing on vm based autonomous web server
topic QA75.5-76.95 Electronic computers. Computer science
url http://shdl.mmu.edu.my/2146/
http://shdl.mmu.edu.my/2146/
http://shdl.mmu.edu.my/2146/
http://shdl.mmu.edu.my/2146/1/Network%20performance%20testing%20on%20VM%20based%20autonomous%20web%20server.pdf