A SNORT-BASED MOBILE AGENT FOR A DISTRIBUTED INTRUSION DETECTION SYSTEM

被引:0
|
作者
Brahmil, Imen [1 ]
Ben Yahial, Sadok [1 ]
Poncelet, Pascal [2 ]
机构
[1] Fac Sci Tunis, Tunis, Tunisia
[2] LIRMM, Montpellier, France
关键词
Misuse detection; Intrusion detection system; Mobiles agents; SNORT rules;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the rapid growth of the network application, new kinds of network attacks are endlessly emerging. Thus, it is of paramount importance to protect the networks from attackers. Consequently, the Intrusion Detection Systems (IDS) are quickly becoming a popular requirement in building a network security infrastructure. Most existing and commercial IDS are generally centralized and suffer from a number of drawbacks, e.g., high rates of false positives, low efficiency, etc, especially when they face distributed attacks. In this paper, we introduce a novel mobile agent-based intrusion detection system focusing on the misuse detection approach, called DIDMAS (Distributed Intrusion Detection using Mobile Agents and Snort). DIDMAS takes advantages of the mobile agent paradigm to implement an efficient distributed system, as well as the integration of existing techniques, i.e., the well-known IDS SNORT. Carried out experiments showed that our proposed system presents better performance as well as a good scalability compared to the pioneer known centralized IDS SNORT system over real traffic and a set of simulated attacks.
引用
收藏
页码:198 / 207
页数:10
相关论文
共 50 条
  • [41] Intrusion detection system model based on neural network and mobile agent
    Deng, Yi-Gui
    Xiao, Shu-Cheng
    Wang, Kang
    Tu, Guang-You
    WAVELET ACTIVE MEDIA TECHNOLOGY AND INFORMATION PROCESSING, VOL 1 AND 2, 2006, : 399 - +
  • [42] Mobile agent-based intrusion detection
    Qiao, YQ
    Ren, XH
    Wang, XL
    ICEMI 2005: Conference Proceedings of the Seventh International Conference on Electronic Measurement & Instruments, Vol 4, 2005, : 57 - 60
  • [43] Investigation of the Intrusion Detection System "Snort" Performance
    Paulauskas, N.
    Skudutis, J.
    ELEKTRONIKA IR ELEKTROTECHNIKA, 2008, (07) : 15 - 18
  • [44] Fuzzy Inference Based Intrusion Detection System: FI-Snort
    Naik, Nitin
    CIT/IUCC/DASC/PICOM 2015 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY - UBIQUITOUS COMPUTING AND COMMUNICATIONS - DEPENDABLE, AUTONOMIC AND SECURE COMPUTING - PERVASIVE INTELLIGENCE AND COMPUTING, 2015, : 2066 - 2071
  • [45] Snort Based Collaborative Intrusion Detection System Using Blockchain in SDN
    Ujjan, Raja Majid Ali
    Pervez, Zeeshan
    Dahal, Keshav
    2019 13TH INTERNATIONAL CONFERENCE ON SOFTWARE, KNOWLEDGE, INFORMATION MANAGEMENT AND APPLICATIONS (SKIMA), 2019,
  • [46] A Network Intrusion Detection System Architecture Based on Snort and Computational Intelligence
    Liu, Tao
    Zhang, Da
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON ELECTRONICS, NETWORK AND COMPUTER ENGINEERING (ICENCE 2016), 2016, 67 : 769 - 775
  • [47] Distributed Intrusion Detection System using Mobile Agents
    Trivedi, Bhushan
    Rajput, Jayant
    Dwivedi, Chintan
    Jobanputra, Pinky
    COMPUTING, COMMUNICATION, AND CONTROL, 2011, 1 : 57 - 61
  • [48] Dynamic hierarchical distributed intrusion detection system based on multi-agent system
    Wu Jun
    Wang Chong-jun
    Wang Jun
    Chen Shi-fu
    2006 IEEE/WIC/ACM INTERNATIONAL CONFERENCE ON WEB INTELLIGENCE AND INTELLIGENT AGENT TECHNOLOGY, WORKSHOPS PROCEEDINGS, 2006, : 89 - +
  • [49] Autonomous agent based distributed fault-tolerant intrusion detection system
    Sen, J
    Sengupta, I
    DISTRIBUTED COMPUTING AND INTERNET TECHNOLOGY, PROCEEDINGS, 2005, 3816 : 125 - 131
  • [50] Research on distributed intrusion detection system based on multi-living agent
    Wang Yue
    Tao Ran
    Zhang Hao
    SCIENCE CHINA-INFORMATION SCIENCES, 2010, 53 (05) : 1067 - 1077