Title :
A Security Decision-Reaction Architecture for Heterogeneous Distributed Network
Author :
Feltus, Christophe ; Khadraoui, Djamel ; Aubert, Jocelyn
Author_Institution :
Centre for IT Innovation, Public Res. Centre Henri Tudor, Luxembourg, Luxembourg
Abstract :
The main objective of this paper is to provide a global decision-reaction architectural built on the requirements for a reaction after alert detection mechanisms in the frame of information systems security and more particularly applied to telecom infrastructures security. These infrastructures are distributed in nature, therefore the architecture is elaborated using the multi-agents system that provides the advantages of autonomous and interaction facilities, and has been associated to the ontoBayes model for decision support mechanism. This model helps agents to make decisions according to preference values and is built upon ontology based knowledge sharing, bayesian networks based uncertainty management and influence diagram based decision support. The Multi-Agent System decision-reaction architecture is developed in a distributed perspective and is composed of three basic layers: low level, intermediate level and high level. The proposed approach has been illustrated based on the network architecture for heterogeneous mobile computing developed by the BARWAN project. Accordingly: the Building Area constitutes the low level and aims to be the interface between the main architecture and the targeted infrastructure. The Campus-Area is the intermediate level responsible of correlating the alerts coming from different domains of the infrastructure and to smartly deploy the reaction actions.
Keywords :
belief networks; computer network security; decision support systems; information networks; mobile computing; multi-agent systems; uncertainty handling; BARWAN project; alert detection mechanisms; bayesian networks based uncertainty management; decision support mechanism; heterogeneous distributed network; heterogeneous mobile computing; influence diagram based decision support; information systems security; multiagents system; ontoBayes model; ontology based knowledge sharing; security decision reaction architecture; telecom infrastructures security; Bayesian methods; Computer architecture; Computer network management; Information security; Information systems; Knowledge management; Multiagent systems; Ontologies; Telecommunications; Uncertainty; bayesian network; decision system; distributed network; multi agent system; reaction; security;
Conference_Titel :
Availability, Reliability, and Security, 2010. ARES '10 International Conference on
Conference_Location :
Krakow
Print_ISBN :
978-1-4244-5879-0
DOI :
10.1109/ARES.2010.57