作者: Qian Chen , Sherif Abdelwahed , Abdelkarim Erradi , None
关键词:
摘要: This paper introduces a model-based autonomic security management (ASM) approach to estimate, detect and identify attacks along with planning sequence of actions effectively protect the networked computing system. In proposed approach, sensors collect system network parameters send data forecasters intrusion detection systems (IDSes). A multi-objective controller selects optimal protection method recover based on signature attacks. The is demonstrated several case studies including Denial Service (DoS) attacks, SQL Injection memory exhaustion Experiments show that ASM can successfully defend victim host from known unknown while maintaining QoS low overheads.