International Journal of Advanced Research in Computer Engineering & Technology
In this paper, the authors propose an efficient IDS system called as VirtuaGuard system that models the network behavior for multilayered web applications of user sessions across both front-end web (HTTP) requests and back-end database (SQL) queries. In this system, VirtuaGuard forms container-based IDS with multiple input streams to produce alerts. In typical three-tiered web server architecture, the web server receives HTTP requests from user clients and then issues SQL queries to the database server to retrieve and update data. This proposed container-based and session-separated web server architecture enhances the security performances and also provides the isolation between the information flows that are separated in each container session.