Title
Intrusion Detection via Artificial Immune System: a Performance-based Approach.
Abstract
In this paper, we discuss the design and engineering of a biologically-inspired, host-based intrusion detection system to protect computer networks. To this end, we have implemented an Artificial Immune System (AIS) that mimics the behavior of the biological adaptive immune system. The proposed AIS, consists of a number of running artificial white blood cells, which search, recognize, store and deny anomalous requests on individual hosts. The model monitors the system through analysing the set of parameters to provide a general information on its state - ill or not. When some parameters are discovered to have anomalous values, then the artificial immune system takes a proper action. To prove the effectiveness of the suggested model, an exhaustive test on the AIS is conducted, using a server running Apache, Mysql and OpenSSH, and results are reported. Four types of attacks were tested: remote buffer overflow, Distributed Denial of Service (DDOS), port scanning, and dictionary-attack. The test proved that our definition of self/non-self system components is quite effective in protecting host-based systems.
Year
DOI
Venue
2008
10.1007/978-0-387-09655-1_12
BIOLOGICALLY-INSPIRED COLLABORATIVE COMPUTING
Keywords
Field
DocType
artificial immune system,intrusion detection
Artificial immune system,Network intrusion detection,Denial-of-service attack,Computer science,Computer network,Negative selection algorithm,Intrusion detection system,Distributed computing,Buffer overflow
Conference
Volume
ISSN
Citations 
268
1571-5736
1
PageRank 
References 
Authors
0.37
7
3
Name
Order
Citations
PageRank
Andrea Visconti1316.11
Nicoló Fusi217210.23
Hooman Tahayori3987.45