Skip to Main Content
A Web intrusion protection mechanism based on platform conversion is presented in the paper. According to Web service, intrusion attack has the relevance of target platforms and web application service programs. Aiming at Windows platform, IIS attack will not be successful when the target is Apache to Linux platform, and vice versa. The presented Intrusion response mechanism uses two servers to load different operating systems and Web service programs, but both can provide Web service of the same content to networks. When an intrusion is detected, mechanism calculates relevance score between attack and target at first .Then according to this relevance score to make the intrusion response decision making and to determine whether to make platform conversion, accordingly choose a secure service host to provide services outside. This intrusion response mechanism balances the contradiction relation between the response positive effect and the response negative impact. It can not only effectively prevent the attacks, but also reduce the risks of false responses.