Library Automation and Digital Archive
LONTAR
Fakultas Ilmu Komputer
Universitas Indonesia

Pencarian Sederhana

Find Similar Add to Favorite

Call Number sem-320
Collection Type Indeks Artikel prosiding/Sem
Title Development of university of indonesia next generation fire wall prototype and access control with deep packet inspection
Author Harish Muhammad Nazief; Tonny Adhi Sabastian; alfan presekal; Gladhi Guarddin;
Publisher ICACSIS 2014 international conference on advanced computer sciences and information systems (Proceedings). Ambhara hotel, Blok M Jakarta, 18 - 19 Oktober 2014
Subject access control,deep packet inspection,application layer, application signature pattern, prototype,free/open source softwere
Location
Lokasi : Perpustakaan Fakultas Ilmu Komputer
Nomor Panggil ID Koleksi Status
sem-320 TERSEDIA
Tidak ada review pada koleksi ini: 44787
Currently there are dozens of internet based applications. Each of these applications can be accessed by their user on the sampe application layer protocols but different pattern of playloads. For example social network applications like facebook,twitter and google plus. Each of them can be accessed using HTTPS protocol, but with different playload for each application. It also possible to access a service in internet by using tunneled protocol,for example bit torrent protocol can be tunneled on top HTTP access. These kind of access modes make standard firewalls obsolete to regulate oue university internet access control. In this research,we are aiming to prove whether an application layer acces control can be developed using deep packet inspection method. With the deep packet inspection method, it is possible to identify applications based on their application signature. If the application signature can be identified, we can construct more rebust rules to regulate university internet access control.We are developing a rototype of application layer acces control using several number of fre/open source softwere components. One of these components is deep packet inspection library – nDPI – which will become our main focus. This research also will explain the way to assemble those softwere components in order to perform access control fuctions. We are also perfoarming a test against nDPI playload detection mechanism and the results are reported in this paper.