Abstract | ||
---|---|---|
The paper presents security platform based on agents as an efficient and robust solution for high-performance intrusion detection system designed for deployment on high-speed network links. The proposed detection algorithm is based on extension of trust modeling techniques with representation of uncertain identities, context representation and implicit assumption that significant traffic anomalies are a result of potentially malicious action. The heterogeneous anomaly detection methods are used by cooperating agents and then correlated using a reputation mechanism. To satisfy the performance requirements, wire-speed data acquisition layer is based on hardware-accelerated Net- Flow probes that provide overview of current network traffic. The output of multi-agent detection layer is presented to operator by a dedicated analyst interface agent, which retrieves additional information to facilitate incident analysis. Our performance results illustrate the potential of combination of high-speed hardware with agents-based detection and advanced analyst interface. |
Year | DOI | Venue |
---|---|---|
2007 | 10.1109/IAT.2007.26 | Fremont, CA |
Keywords | Field | DocType |
highspeed network link,context representation,heterogeneous anomaly detection method,high-performance intrusion detection system,agents-based detection,current network traffic,advanced analyst interface,agent-based network intrusion detection,dedicated analyst interface agent,proposed detection algorithm,multi-agent detection layer,multiagent systems,satisfiability,hardware accelerator,multi agent systems,intrusion detection system,data acquisition,anomaly detection | Anomaly detection,Host-based intrusion detection system,Software deployment,Computer science,Data acquisition,Real-time computing,Anomaly-based intrusion detection system,Multi-agent system,Operator (computer programming),Intrusion detection system,Distributed computing | Conference |
ISBN | Citations | PageRank |
0-7695-3027-3 | 6 | 0.50 |
References | Authors | |
14 | 4 |
Name | Order | Citations | PageRank |
---|---|---|---|
Vojtech Krmicek | 1 | 47 | 5.75 |
Pavel Celeda | 2 | 251 | 27.91 |
Martin Rehak | 3 | 251 | 28.57 |
Michal Pěchouček | 4 | 1134 | 133.88 |