An ontology-based approach to react to network attacks

被引:6
|
作者
Cuppens-Boulahia, Nora [1 ]
Cuppens, Frederic [1 ]
Lopez de Vergara, Jorge E. [2 ]
Vazquez, Enrique [3 ]
Guerra, Javier [3 ]
Debar, Herve [4 ]
机构
[1] TELECOM Bretagne, Cesson Sevigne, France
[2] Univ Autonoma Madrid, Madrid, Spain
[3] Univ Politecn Madrid, Madrid, Spain
[4] France Telecom, Caen, France
关键词
Attack reaction; policy instantiation; ontology; OrBAC; IDMEF; OWL; SWRL;
D O I
10.1109/CRISIS.2008.4757461
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
To address the evolution of security incidents in current communication networks it is important to react quickly and efficiently to an attack. The RED (Reaction after Defection) project is defining and designing solutions to enhance the detection/reaction process, improving the overall resilience of IP networks to attacks and help telecommunication and service providers to maintain sufficient quality of service and respect service level agreements. Within this project, a main component is in charge of instantiating new security policies that counteract the network-attacks. This paper proposes an ontology-based approach to instantiate these security policies. This technology provides a way to map alerts into attack contexts, which are used to identify the policies to be applied in the network to solve the threat. For this, ontologies to describe alerts and policies are defined. using inference rules to perform such mappings.
引用
收藏
页码:27 / +
页数:2
相关论文
共 50 条
  • [21] Ontology-based peer exchange network(OPEN)
    Dong, Hui
    Wang, Zhimin
    Morris, Robert A.
    Huang, Jun
    CTS 2007: PROCEEDINGS OF THE 2007 INTERNATIONAL SYMPOSIUM ON COLLABORATIVE TECHNOLOGIES AND SYSTEMS, 2007, : 191 - 198
  • [22] An Ontology-based Social Network Analysis Prototype
    Lecocq, Regine
    Martineau, Etienne
    Caropreso, Maria Fernanda
    2013 IEEE INTERNATIONAL MULTI-DISCIPLINARY CONFERENCE ON COGNITIVE METHODS IN SITUATION AWARENESS AND DECISION SUPPORT (COGSIMA), 2013, : 149 - 154
  • [23] An ontology-based deep belief network model
    Xiulei Liu
    Ruoyu Chen
    Qiang Tong
    Zhihui Qin
    Qinfu Shi
    Li Duan
    Computing, 2022, 104 : 1017 - 1032
  • [24] An ontology-based network intrusion detection system: A user-oriented approach
    Hung, Shao-Shin
    Liu, Damon Shing-Min
    INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2006, 3975 : 722 - 723
  • [25] An Ontology-Based Bayesian Network Approach for Representing Uncertainty in Clinical Practice Guidelines
    Zheng, Hai-Tao
    Kang, Bo-Yeong
    Kim, Hong-Gee
    UNCERTAINTY REASONING FOR THE SEMANTIC WEB I, 2008, 5327 : 161 - 173
  • [26] An ontology-based deep belief network model
    Liu, Xiulei
    Chen, Ruoyu
    Tong, Qiang
    Qin, Zhihui
    Shi, Qinfu
    Duan, Li
    COMPUTING, 2022, 104 (05) : 1017 - 1032
  • [27] Ontology-Based Reasoning with Uncertain Context in a Smart Home: A Decision Network Approach
    Mohammed, Abdul-Wahid
    Xu, Yang
    Liu, Ming
    2015 IEEE/WIC/ACM INTERNATIONAL CONFERENCE ON WEB INTELLIGENCE AND INTELLIGENT AGENT TECHNOLOGY (WI-IAT), VOL 1, 2015, : 515 - 522
  • [28] Ontology-based semantic metadata extraction approach
    Jebali, Baraa
    Farhat, Ramzi
    2013 INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING AND SOFTWARE APPLICATIONS (ICEESA), 2013, : 412 - 416
  • [29] Software engineering documentation:: An ontology-based approach
    Ambrósio, AP
    de Santos, DC
    de Lucena, FN
    da Silva, JC
    WEBMEDIA & LA-WEB 2004, VOL 1, PROCEEDINGS, 2004, : 38 - 40
  • [30] An Ontology-Based Reasoning Approach for Document Annotation
    Fontes, Celso Araujo
    Cavalcanti, Maria Claudia
    Moura, Ana Maria de C.
    2013 IEEE SEVENTH INTERNATIONAL CONFERENCE ON SEMANTIC COMPUTING (ICSC 2013), 2013, : 160 - 167