A SNORT-BASED MOBILE AGENT FOR A DISTRIBUTED INTRUSION DETECTION SYSTEM

被引:0
|
作者
Brahmil, Imen [1 ]
Ben Yahial, Sadok [1 ]
Poncelet, Pascal [2 ]
机构
[1] Fac Sci Tunis, Tunis, Tunisia
[2] LIRMM, Montpellier, France
关键词
Misuse detection; Intrusion detection system; Mobiles agents; SNORT rules;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the rapid growth of the network application, new kinds of network attacks are endlessly emerging. Thus, it is of paramount importance to protect the networks from attackers. Consequently, the Intrusion Detection Systems (IDS) are quickly becoming a popular requirement in building a network security infrastructure. Most existing and commercial IDS are generally centralized and suffer from a number of drawbacks, e.g., high rates of false positives, low efficiency, etc, especially when they face distributed attacks. In this paper, we introduce a novel mobile agent-based intrusion detection system focusing on the misuse detection approach, called DIDMAS (Distributed Intrusion Detection using Mobile Agents and Snort). DIDMAS takes advantages of the mobile agent paradigm to implement an efficient distributed system, as well as the integration of existing techniques, i.e., the well-known IDS SNORT. Carried out experiments showed that our proposed system presents better performance as well as a good scalability compared to the pioneer known centralized IDS SNORT system over real traffic and a set of simulated attacks.
引用
收藏
页码:198 / 207
页数:10
相关论文
共 50 条
  • [1] A Mobile Agent and Snort Based Distributed Intrusion Detection System
    Ye, Xiao-Ling
    Zhang, Ying-Chao
    Zhang, Chao-Long
    Chen, Chao
    Huang, Xin-Yi
    2009 WRI WORLD CONGRESS ON SOFTWARE ENGINEERING, VOL 1, PROCEEDINGS, 2009, : 281 - 285
  • [2] Performance Analysis of Snort-based Intrusion Detection System
    Garg, Akash
    Maheshwari, Prachi
    2016 3RD INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATION SYSTEMS (ICACCS), 2016,
  • [3] Design of a Snort-Based Hybrid Intrusion Detection System
    Gomez, J.
    Gil, C.
    Padilla, N.
    Banos, R.
    Jimenez, C.
    DISTRIBUTED COMPUTING, ARTIFICIAL INTELLIGENCE, BIOINFORMATICS, SOFT COMPUTING, AND AMBIENT ASSISTED LIVING, PT II, PROCEEDINGS, 2009, 5518 : 515 - +
  • [4] RESEARCH AND IMPLEMENTATION ON SNORT-BASED HYBRID INTRUSION DETECTION SYSTEM
    Ding, Yu-Xin
    Xiao, Min
    Liu, Ai-Wu
    PROCEEDINGS OF 2009 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-6, 2009, : 1414 - 1418
  • [5] Research on IPv6 Intrusion Detection System Snort-based
    Shen Zihao
    Wang Hui
    2010 INTERNATIONAL CONFERENCE ON DISPLAY AND PHOTONICS, 2010, 7749
  • [6] Research on Distributed Intrusion Detection System Based on Mobile Agent
    Hou, Zhisong.
    Yu, Zhou.
    Zheng, Wei.
    Zuo, Xiangang.
    JOURNAL OF COMPUTERS, 2012, 7 (08) : 1919 - 1926
  • [7] Research on distributed intrusion detection system based on mobile agent
    Cao, Jin-Gang
    Zheng, Gu-Ping
    PROCEEDINGS OF 2008 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2008, : 1394 - 1399
  • [8] Research of Distributed Intrusion Detection System Model Based on Mobile Agent
    Liu Jianxiao
    Li Lijuan
    2009 INTERNATIONAL FORUM ON INFORMATION TECHNOLOGY AND APPLICATIONS, VOL 2, PROCEEDINGS, 2009, : 53 - 57
  • [9] A safe mobile agent system for distributed intrusion detection
    Zhong, SC
    Song, QF
    Cheng, XC
    Zhang, Y
    2003 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-5, PROCEEDINGS, 2003, : 2009 - 2014
  • [10] A Snort-based Approach for Heartbleed Bug Detection
    Zhang, Yu
    Liu, Qingzhong
    Liu, Yanling
    PROCEEDINGS OF THE 2014 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND ELECTRONIC TECHNOLOGY, 2015, 6 : 312 - 316