Cloud Network Security Monitoring and Response System

被引:0
|
作者
Mukhtarov, Murat [1 ]
Miloslavskaya, Natalia [1 ]
Tolstoy, Alexander [1 ]
机构
[1] Natl Res Nucl Univ MEPhI, Informat Secur Fac, Moscow, Russia
关键词
Cloud computing; Cloud infrastructure; Virtual Infrastructure; Application Hosting; Network Security;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The public clouds network monitoring and response system, based on flow measurements, open source tools and CSMS (Cloud Security Monitoring System) module, is to be introduced in this paper. The main goal of the research is to develop an algorithm and to implement a system, which automatically detects and makes a response to network anomalies, occurring inside a Cloud infrastructure. In this research is proposed approach of anomaly detection inside the Cloud infrastructure which is based on a profiling method of IPFIX (IP Flow Information Export) protocol data and idea of negative selection principle is used for generating signatures of network anomalies, which are named detectors. The automatic response module makes a decision about network anomalies origin, based on several iterative checks and creates a record on the firewall rules table. The network traffic profiling process automatically generates the firewall rules set for all traffic classes, obtained during the learning process. Main results of the research are development of the algorithms and the way of the monitoring network attacks inside the Cloud. Implementation of the algorithms is python-based script and currently stays under hard-testing phase.
引用
收藏
页码:181 / 185
页数:5
相关论文
共 50 条
  • [21] IP Based Security Architecture of Virtual Network in Cloud Computing System
    Yang, Jong-Sung
    Choi, Hyoung-Kee
    2012 8TH INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING CONFERENCE (IWCMC), 2012, : 709 - 715
  • [22] A TUNING METHOD OF A MONITORING SYSTEM FOR NETWORK FORENSICS IN CLOUD ENVIRONMENT
    Ishihara, Shintaro
    Akiyama, Toyokazu
    2018 IEEE 42ND ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE (COMPSAC), VOL 1, 2018, : 951 - 954
  • [23] Community aware network security and a DDoS response system
    Karnouskos, S
    ANNALS OF TELECOMMUNICATIONS, 2004, 59 (5-6) : 525 - 542
  • [24] On development of security monitoring system via wireless sensing network
    Xiaoning Zhu
    Bojian Ding
    Wenjun Li
    Lize Gu
    Yixian Yang
    EURASIP Journal on Wireless Communications and Networking, 2018
  • [25] On development of security monitoring system via wireless sensing network
    Zhu, Xiaoning
    Ding, Bojian
    Li, Wenjun
    Gu, Lize
    Yang, Yixian
    EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2018,
  • [26] A Survey of Network Security Situation Awarness in Power Monitoring System
    Tao, Hongzhu
    Zhou, Jieying
    Liu, Sen
    2017 IEEE CONFERENCE ON ENERGY INTERNET AND ENERGY SYSTEM INTEGRATION (EI2), 2017,
  • [27] An Integrated Security Monitoring System for Digital Service Network Devices
    Cheng, Wen-Lin
    Chuang, Ting-Che
    Yang, Chien-Wen
    Lin, Yueh-Hsien
    Liu, Min
    Yin, Chuan
    2017 19TH ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS 2017): MANAGING A WORLD OF THINGS, 2017, : 118 - 122
  • [28] Network Interconnection Security Buffer Technology for Power Monitoring System
    Wang, Jifeng
    Wu, Jinyu
    Tao, Wenwei
    Zhu, Wen
    Qiu, Weijie
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [29] A multi-agent system for computer network security monitoring
    Prusiewicz, Agnieszka
    AGENT AND MULTI-AGENT SYSTEMS: TECHNOLOGIES AND APPLICATIONS, PROCEEDINGS, 2008, 4953 : 842 - 849
  • [30] IOT monitoring membrane computing based on quantum inspiration to enhance security in cloud network
    Visalaxi G.
    Muthukumaravel A.
    Measurement: Sensors, 2023, 27