A SNORT-BASED MOBILE AGENT FOR A DISTRIBUTED INTRUSION DETECTION SYSTEM

被引:0
|
作者
Brahmil, Imen [1 ]
Ben Yahial, Sadok [1 ]
Poncelet, Pascal [2 ]
机构
[1] Fac Sci Tunis, Tunis, Tunisia
[2] LIRMM, Montpellier, France
关键词
Misuse detection; Intrusion detection system; Mobiles agents; SNORT rules;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the rapid growth of the network application, new kinds of network attacks are endlessly emerging. Thus, it is of paramount importance to protect the networks from attackers. Consequently, the Intrusion Detection Systems (IDS) are quickly becoming a popular requirement in building a network security infrastructure. Most existing and commercial IDS are generally centralized and suffer from a number of drawbacks, e.g., high rates of false positives, low efficiency, etc, especially when they face distributed attacks. In this paper, we introduce a novel mobile agent-based intrusion detection system focusing on the misuse detection approach, called DIDMAS (Distributed Intrusion Detection using Mobile Agents and Snort). DIDMAS takes advantages of the mobile agent paradigm to implement an efficient distributed system, as well as the integration of existing techniques, i.e., the well-known IDS SNORT. Carried out experiments showed that our proposed system presents better performance as well as a good scalability compared to the pioneer known centralized IDS SNORT system over real traffic and a set of simulated attacks.
引用
收藏
页码:198 / 207
页数:10
相关论文
共 50 条
  • [31] Improving Performance of Mobile Agent Based Intrusion Detection System
    Shah, Bhavin
    Trivedi, Bhushan H.
    2015 5TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING & COMMUNICATION TECHNOLOGIES ACCT 2015, 2015, : 425 - 430
  • [32] Mobile terminal intrusion detection system based on intelligent agent
    Dai Hong
    Zhang Runtong
    Lan Tian
    GLOBAL MOBILE CONGRESS 2005, 2005, : 401 - 406
  • [33] A hybrid immune intrusion detection system based on mobile agent
    Zhou, Xuanwu
    Yang, Xiaoyuan
    Wei, Ping
    Hu, Yupu
    7TH INTERNATIONAL CONFERENCE ON COMPUTER-AIDED INDUSTRIAL DESIGN & CONCEPTUAL DESIGN, 2006, : 844 - 848
  • [34] Improving performance of mobile agent based intrusion detection system
    MCA Programme, L. J. Institute of Management Studies, Ahmedabad, India
    不详
    Int. Conf. Adv. Comput. Commun.Technol., ACCT, 2327, (425-430):
  • [35] Survival architecture for distributed intrusion detection system (dIDS) using mobile agent.
    Vongpradhip, Sartid
    Sixth IEEE International Symposium on Network Computing and Applications, Proceedings, 2007, : 332 - 338
  • [36] Agent-based approach for distributed intrusion detection system design
    Juszczyszyn, Krzysztof
    Nguyen, Ngoc Thanh
    Kolaczek, Grzegorz
    Grzech, Adam
    Pieczynska, Agnicszka
    Katarzyniak, Radoslaw
    COMPUTATIONAL SCIENCE - ICCS 2006, PT 3, PROCEEDINGS, 2006, 3993 : 224 - 231
  • [37] Design and implementation of distributed intrusion detection system based on management agent
    School of Information Science and Engineering, Central South University, Changsha 410083, China
    Zhongnan Daxue Xuebao (Ziran Kexue Ban), 2007, 6 (1174-1178):
  • [38] Amelioration design of distributed network intrusion detection system based on agent
    Liu, Wenjun
    Journal of Computational Information Systems, 2007, 3 (06): : 2473 - 2478
  • [39] Intrusion Detection System In wireless Sensor network Based On Mobile Agent
    El Mourabit, Yousef
    Toumanari, Ahmed
    Bouirden, Anouar
    Zougagh, Hicham
    Latif, Rachid
    2014 SECOND WORLD CONFERENCE ON COMPLEX SYSTEMS (WCCS), 2014, : 248 - 251
  • [40] Coordinator Association Approach to Mobile Agent Based Intrusion Detection System
    Javan, Ali
    Samsudin, Khairulmizam
    Ramli, Abdul Rahman
    Adnan, Wan Azizun Wan
    DFMA 2008: FIRST INTERNATIONAL CONFERENCE ON DISTRIBUTED FRAMEWORKS & APPLICATIONS, PROCEEDINGS, 2008, : 111 - 114