A cooperative intrusion detection system based on autonomous agents

被引:0
|
作者
Yongle, D [1 ]
Jun, Q [1 ]
Meilin, S [1 ]
机构
[1] Tsinghua Univ, Beijing 100084, Peoples R China
关键词
cooperative intrusion detection; autonomous agent; widespread attack;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Widespread attacks involving multiple hosts/networks happen more frequently as internetworking among computer systems via the Internet becomes more widely and keeps rapid increase. Due to lack of information, it can be quite difficult for conventional intrusion detection systems to identify such attacks in progress. Cooperative intrusion detection, on the basis of information sharing, is proved as a necessary measure to detect widespread attacks by other researcher [1,2]. This paper presents a cooperative approach for intrusion detection that provides a method for individual ID components working cooperatively to perform concerted detections. Being constructed on the basis of ID components, CoIDS can adopt both existed (usually more mature) and new ID techniques. This makes CoIDS extensible and scalable. In addition, an ID component is essentially an autonomous agent, which makes CoIDS available with certain loss of functionality even when the intrusion detection manager does not work. Its reliability is also improved because failure of one ID component will not cause any other to stop working. Further more, it improved the accuracy of detection for conventional intrusions by validating analysis result with data from different ID components.
引用
收藏
页码:861 / 863
页数:3
相关论文
共 50 条
  • [1] Intrusion detection using autonomous agents
    Spafford, EH
    Zamboni, D
    COMPUTER NETWORKS-THE INTERNATIONAL JOURNAL OF COMPUTER AND TELECOMMUNICATIONS NETWORKING, 2000, 34 (04): : 547 - 570
  • [2] Ontology based cooperative intrusion detection system
    He, YX
    Chen, W
    Yang, M
    Peng, WL
    NETWORK AND PARALLEL COMPUTING, PROCEEDINGS, 2004, 3222 : 419 - 426
  • [3] A distributed intrusion detection framework based on autonomous and mobile agents
    Boughaci, Dalila
    Drias, Habiba
    Bendib, Ahmed
    Bouznit, Youcef
    Benhamou, Belaid
    DEPCOS-RELCOMEX 2006, 2006, : 248 - +
  • [4] A multiple agents based intrusion detection system
    Ma, WL
    Sharma, D
    KNOWLEDGE-BASED INTELLIGENT INFORMATION AND ENGINEERING SYSTEMS, PT 1, PROCEEDINGS, 2005, 3681 : 205 - 211
  • [5] A Distributed Intrusion Detection System Based on Agents
    Liu, Jianxiao
    Li, Lijuan
    PACIIA: 2008 PACIFIC-ASIA WORKSHOP ON COMPUTATIONAL INTELLIGENCE AND INDUSTRIAL APPLICATION, VOLS 1-3, PROCEEDINGS, 2008, : 531 - 535
  • [6] Autonomous Agents based Dynamic Distributed (A2D2) intrusion detection system
    Cai, Yu
    Jasani, Hetal
    INNOVATIVE ALGORITHMS AND TECHNIQUES IN AUTOMATION, INDUSTRIAL ELECTRONICS AND TELECOMMUNICATIONS, 2007, : 527 - 533
  • [7] An architecture for intrusion detection using Autonomous Agents
    Balasubramaniyan, JS
    Garcia-Fernandez, JO
    Isacoff, D
    Spafford, E
    Zamboni, D
    14TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 1998, : 13 - 24
  • [8] Implementation of an intrusion detection system based on mobile agents
    Bernardes, MC
    Moreira, ED
    INTERNATIONAL SYMPOSIUM ON SOFTWARE ENGINEERING FOR PARALLEL AND DISTRIBUTED SYSTEMS, PROCEEDINGS, 2000, : 158 - 164
  • [9] A Distributed Intrusion Detection System Based on Mobile Agents
    Mo Xiu-liang
    Wang Chun-dong
    Wang Huai-bin
    PROCEEDINGS OF THE 2009 2ND INTERNATIONAL CONFERENCE ON BIOMEDICAL ENGINEERING AND INFORMATICS, VOLS 1-4, 2009, : 2110 - 2114
  • [10] A Cooperative Intrusion Detection System Based on Improved Parallel SVM
    Du, Hongle
    Teng, Shaohua
    Fu, Xiufen
    Zhang, Wei
    Pu, Yuanfang
    JCPC: 2009 JOINT CONFERENCE ON PERVASIVE COMPUTING, 2009, : 515 - 518