Advertisement
Promo

Network management Toolkit in association with http://ad.doubleclick.net/clk;217618582;14453422;e?http://www.citrix.com/lang/English/lp/lp_1688615.asp

Download now

Linux Security Modules Enhancements: Module Stacking Framework and TCP State Transition Hooks for State-Driven NIDS

PublisherGraz University of Technology
Format247.9KB PDFDate added27 Apr 2006
Topics TCP - IP, Linux - Open Source, Linux Server OS
Downloads46

Until the availability of Kernel 2.6 the Linux operating system lacked general support to integrate security mechanisms into the kernel. The Linux Security Module Framework (LSM) was designed to overcome this limitation. Although LSM provides a solid baseline for kernel security, it lacks important features. In this paper two of these limitations are addressed: First a framework-managed module stacking mechanism is proposed that allows multiple security policies to be present in the kernel at the same time. The second aspect this paper deals with is the addition of LSM hooks to the Linux TCP layer. This extension was chosen because it allows the implementation of a State-Based Network Intrusion Detection Mechanism which is outlined at the end of the paper.

Download now

Did you find this white paper useful?
24 out of 50 users found this white paper useful


  • Trackback
  • Clip Link

Related white papers

Building Reliable IP Telephony Systems

Reliability is the most critical aspect of a business phone system. IP telephony systems will deliver differing service levels because their architecture is fundamentally different. Ironically, optimal architecture and design...


Cash In Your PBX -- Upgrade with Cisco. Gain significant new savings now

PBX systems and old telephony applications were just not built for today's business needs. They don't scale easily, struggle to support mobility, and are increasingly expensive to maintain. Now you...


IOS Tips and Tricks

There are a number of things you can do with Cisco's IOS to make your life easier. This white paper presents some ways that IOS commands can help streamline your...


Dell-Customized Mobility Solutions

The marketplace is overflowing with a multitude of mobility options for businesses of all types and sizes. From notebooks, netbooks, and handheld computers to WiFi, smartphones, and mobile broadband, there...


Decoupling Congestion Control From TCP for Multi-Hop Wireless Networks: Semi-TCP

TCP performs poorly in multihop wireless networks and even worse if end-to-end connectivity is often broken such as in challenged networks. Lots of research has been carried out but this...


Interactive Guide: Enterprise Mobility

Getting Started With Enterprise Mobility: A Guide to Sybase's Enterprise Mobility Platform. With the broadest portfolio of industry-leading products, an innovative mobility platform that provides a foundation for future growth,...


Webcast & Video: Special Report on MEAP featuring research from Gartner

Complimentary Webcast: Taking a Strategic Approach to Enterprise Mobility. Whether you're just getting started with mobility or have already rolled out multiple applications, taking a strategic approach to mobility is...


Broadband Deals? Powered by Top 10 Broadband

150+ broadband packages

Compare 30+ mobile broadband deals

Mobile Broadband »
White Paper

Featured White Paper

IBM Virtualization Services

Virtualization is a powerful technology and can have profound effects on the datacenter; however, it should be viewed as a component of an overall IT strategy that will be able to support the enterprise's needs. IDC recommends that enterprises look at the entire architecture and determine how to best deploy virtualization

Download Now

Other White Papers

HP print solutions and 3M

the objective for 3M was to optimize office printing infrastructure at 3M locations worldwide...

IBM XIV® Storage System: Thin Provisioning Reinvented

Managing IT storage infrastructure is an endless balancing act of providing enterprise-class...

See All White Papers


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters