An Agent-Based Intrusion Detection System for Local Area Networks

作者: Jaydip Sen

DOI:

关键词: Computer scienceAnomaly-based intrusion detection systemFalse positive paradoxHost-based intrusion detection systemDistributed Computing EnvironmentTask (project management)Networked systemLocal area networkDistributed computingComputer networkIntrusion detection system

摘要: Since it is impossible to predict and identify all the vulnerabilities of a network beforehand, penetration into system by malicious intruders cannot always be prevented, intrusion detection systems (IDSs) are essential entities ensure security networked system. To effective in carrying out their functions, IDSs need accurate, adaptive, extensible. Given these stringent requirements high level current days' networks, design an IDS has become very challenging task. Although, extensive research been done on distributed environment, suffer from number drawbacks e.g., rates false positives, low efficiency etc. In this paper, proposed that consists group autonomous cooperating agents. addition its ability detect attacks, capable identifying isolating compromised nodes thereby introducing fault-tolerance operations. The experiments conducted have shown positives compared some currently existing systems.

参考文章(43)
Arjita Ghosh, Sandip Sen, Agent-based distributed intrusion alert system IWDC'04 Proceedings of the 6th international conference on Distributed Computing. pp. 240- 251 ,(2004) , 10.1007/978-3-540-30536-1_28
Kristian G. Olesen, Finn V. Jensen, Steffen L. Lauritzen, Bayesian updating in causal probabilistic networks by local computations Computational Statistics Quarterly. ,vol. 4, pp. 269- 282 ,(1990)
Richard E. Neapolitan, Probabilistic reasoning in expert systems ,(1990)
Jiahai Yang, Peng Ning, X. Sean Wang, Sushil Jajodia, CARDS: A Distributed System for Detecting Coordinated Attacks information security. pp. 171- 180 ,(2000) , 10.1007/978-0-387-35515-3_18
Jianping Zeng, Donghui Guo, Agent-based Intrusion Detection for Network-based Application International Journal of Network Security. ,vol. 8, pp. 201- 210 ,(2009)
Jaydip Sen, Indranil Sengupta, Autonomous agent based distributed fault-tolerant intrusion detection system international conference on distributed computing and internet technology. pp. 125- 131 ,(2005) , 10.1007/11604655_16
Stephen E. Smaha, Terrance L. Goan, James Brentano, Daniel M. Teal, Karl N. Levitt, Biswanath Mukherjee, Steven R. Snapp, L. Todd Heberlein, Gihan V. Dias, Tim Grance, Che-Lin Ho, Doug Mansur, DIDS (distributed intrusion detection system)—motivation, architecture, and an early prototype Internet besieged. pp. 211- 227 ,(1997)
Osman Ghazali, Norita Md Norwawi, Mohammed M. Kadhum, Mohammad M. Rasheed, A Traffic Signature-based Algorithm for Detecting Scanning Internet Worms International Journal of Computer Network and Information Security. ,vol. 1, ,(2009)
S. L. Lauritzen, D. J. Spiegelhalter, Local computations with probabilities on graphical structures and their application to expert systems Journal of the royal statistical society series b-methodological. ,vol. 50, pp. 415- 448 ,(1990) , 10.1111/J.2517-6161.1988.TB01721.X