Browse > Article
http://dx.doi.org/10.6109/jkiice.2019.23.7.861

A Convergence Implementation of Realtime Traffic Shaping and IPS on Small Integrated Security Router for IDC  

Yang, SeungEui (HHOME & INTERMEDIA)
Park, Kiyoung (Department of Computer Engineering, Paichai University)
Jung, HoeKyung (Department of Computer Engineering, Paichai University)
Abstract
Various server-based services such as big data, IoT and artificial intelligence have been made online. As a result, the demand for IDC to support stable server operation is increasing. IDC is a server-based facility with a stable line and power supply facility that manages 20 to 30 servers in an efficiently separated rack-level subnetwork. Here, we need a way to efficiently manage servers security, firewall, and traffic on a rack-by-rack basis. Including traffic shaping capabilities that control routers, firewalls, IPS, and line speeds, as well as VPN technology, a recent interest. If three or five kinds of commercial equipment are adopted to support this, it may be a great burden to the management cost as well as the introduction cost. Therefore, in this paper, we propose a method to implement the five functions in one rack-unit small integrated security router. In particular, IDC intends to integrate traffic shaping and IPS, which are essential technologies, and to propose the utility accordingly.
Keywords
router; firewall; traffic shaping; IDS; OpenWRT;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 S. E. Yang, I. S. Kang, B. O. Go, and H. K. Jung, "A Realtime Traffic Shaping Method for VPN Tunneling on Smart Gateway Supporting IoT," The Journal of Korea Institute of Information and Communication Engineering, vol.21, no.6, pp. 1121-1126, 2017.   DOI
2 (2015, May). "OpenWrt Chaos Calmer 15.05," [Internet]. Available:http://www.openwrt.org.
3 K. Ishiguro. (2017, March). "A routing software package for TCP/IP networks" [Online]. Available:https://www.guagga.net, Ouagga 1.2.0.
4 T. Jin, "OpenWrt Development Guide," Wireless Networks Lab, CCIS, MEU. Retrieved, Oct. 2013.
5 Open VPN [Internet]. Available::http://openvpn.net/.
6 The Linux Foundation. Retrieved. (2014, January). "Introduction to iproute2" [Online]. Available: http://www.linuxfoundation.org.
7 B. Hubert. (2012, May). "Linux Advanced Routing & Traffic Control HOWTO" [Online]. Available: http://lartc.org/,DocBook Edition.
8 S. E. Yang, B. O. Hog, J. K. Choi, and H. K. Jung, "Wired/Wireless Gateway System Supporting LAN-to- LAN VPN with Multi-Queuing Realtime Traffic Shaping," Journal of the Korea Institute of Information and Communication Engineering, vol. 19, no. 5, May. 2015.
9 The Snort Project, (2018, January). "SNORT Users Manual," [Online]. Available: https://www.snort.org, SNORT 2.9.12.
10 F. Alam. (2015, March). "Intrusion Detection & SNORT," APRICOT2015, [Online]. Available: https://nsrc.org/workshops.