A collaborative framework for intrusion detection (C-NIDS) in Cloud computing

被引:0
|
作者
Al Haddad, Zayed [1 ]
Hanoune, Mostafa [1 ]
Mamouni, Abdelaziz [1 ]
机构
[1] Hassan II Univ Casablanca, Fac Sci Ben Msik, Lab Informat Technol & Modeling, Casablanca, Morocco
关键词
Security; Cloud Computing; Cloud based IDS; Virtual infrastructure;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, Cloud computing has emerged as a new paradigm for delivering highly scalable and on-demand shared pool IT resources such as networks, servers, storage, applications and services through internet. It enables IT managers to provision services to users faster and in a costeffective way. As a result, this technology is used by an increasing number of end users. On the other hand, existing security deficiencies and vulnerabilities of underlying technologies can leave an open door for intruders. Indeed, one of the major security issues in Cloud is to protect against distributed attacks and other malicious activities on the network that can affect confidentiality, availability and integrity of Cloud resources. In order to solve these problems, we propose a Collaborative Network Intrusion Detection System (C-NIDS) to detect network attacks in Cloud by monitoring network traffic, while offering high accuracy by addressing newer challenges, namely, intrusion detection in virtual network, monitoring high traffic, scalability and resistance capability. In our NIDS framework, we use Snort as a signature based detection to detect known attacks, while for detecting network anomaly, we use Support Vector Machine (SVM). Moreover, in this framework, the NIDS sensors deployed in Cloud operate in collaborative way to oppose the coordinated attacks against cloud infrastructure and knowledge base remains up-to-date.
引用
收藏
页码:261 / 265
页数:5
相关论文
共 50 条
  • [31] Novel Collaborative Intrusion Detection for Enhancing Cloud Security
    Elbakri, Widad
    Siraj, Maheyzah Md.
    Al-rimy, Bander Ali Saleh
    Almalki, Sultan Ahmed
    Alghamdi, Tami
    Alkhorem, Azan Hamad
    Sheldon, Frederick T.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2024, 15 (12) : 942 - 953
  • [32] Supervised classifier approach for intrusion detection on KDD with optimal mapreduce framework model in cloud computing
    Murugan I.
    Hemalatha S.
    Manickam P.
    Sathesh Kumar K.
    Shankar K.
    Recent Advances in Computer Science and Communications, 2021, 14 (04) : 1115 - 1125
  • [33] OntoIDF: a smart knowledge-based framework for intrusion detection in autonomous cloud computing environment
    Banpreet Kaur
    Sunil Gupta
    International Journal of Information Technology, 2025, 17 (2) : 1023 - 1030
  • [34] cl-CIDPS: A Cloud Computing Based Cooperative Intrusion Detection and Prevention System Framework
    Al-Mousa, Zahraa
    Nasir, Qassim
    FUTURE NETWORK SYSTEMS AND SECURITY, FNSS 2015, 2015, 523 : 181 - 194
  • [35] A Model for Adaptive and Distributed Intrusion Detection for Cloud Computing
    Ibrahim, Nurudeen Mahmud
    Zainal, Anazida
    2018 SEVENTH ICT INTERNATIONAL STUDENT PROJECT CONFERENCE (ICT-ISPC), 2018, : 12 - +
  • [36] Cloud computing for network security intrusion detection system
    Yang, J. (jinnyang@163.com), 1600, Academy Publisher (08):
  • [37] A Cooperative Intrusion Detection Model for Cloud Computing Networks
    Teng, Shaohua
    Zheng, Chaoyu
    Zhu, Haibin
    Liu, Dongning
    Zhang, Wei
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (03): : 107 - 118
  • [38] Performance Analysis of Intrusion Detection Systems in the Cloud Computing
    Abdelaziz, Ettaoufik
    Mohamed, Ouzzif
    PROCEEDINGS OF 2017 3RD INTERNATIONAL CONFERENCE OF CLOUD COMPUTING TECHNOLOGIES AND APPLICATIONS (CLOUDTECH), 2017, : 136 - 143
  • [39] Proxy Network Intrusion Detection System for Cloud Computing
    Oktay, Ueman
    Sahingoz, Ozgur Koray
    2013 INTERNATIONAL CONFERENCE ON TECHNOLOGICAL ADVANCES IN ELECTRICAL, ELECTRONICS AND COMPUTER ENGINEERING (TAEECE), 2013, : 98 - 104
  • [40] An Improved Distributed Intrusion Detection Architecture for Cloud Computing
    Ghorbani, Hamid Reza
    Hashemi, Mahmoud Reza
    COMPUTER NETWORKS AND DISTRIBUTED SYSTEMS, CNDS 2013, 2014, 428 : 105 - 116