信息网络安全 ›› 2015, Vol. 15 ›› Issue (9): 46-49.doi: 10.3969/j.issn.1671-1122.2015.09.011

Previous Articles     Next Articles

A Performance Analysis Method for Intrusion Prevention System

LIU Wei1, LI Quan-lin2, RUI Li1   

  1. 1. No.92664 Troop, Qingdao Shandong 266031, China;
    2. School of Economics and Management Sciences, Yanshan University, Qinhuangdao Hebei 066004, China
  • Received:2015-07-15 Online:2015-09-01

Abstract: Intrusion prevention system (IPS) is a crucial defensive measure against malicious attacks to information system. However, the improper IPS configuration can have a negative impact on network performances in terms of end-to-end delay or packets loss. Most researchers mainly focus on putting forward new IPS and analyzing the different methodologies, but ignoring the research of quantitative analysis on IPS. By analyzing the system as a quasi-birth-and -death process, this paper obtains the steady probabilities distribution to compute some important indices by establishing a two-dimensional Markov chain model. The experimental results prove that the general analytical method can effectively evaluate the performances of IPS, and also testify the correctness of the model indirectly.

Key words: intrusion prevention system, Markov chain mode, performance analysis

CLC Number: