• DocumentCode
    2220145
  • Title

    Malware Filtering for Network Security Using Weighted Optimality Measures

  • Author

    Bloem, Michael ; Alpcan, Tansu ; Schmidt, Stephan ; Basar, Tamer

  • Author_Institution
    Univ. of Illinois, Urbana
  • fYear
    2007
  • fDate
    1-3 Oct. 2007
  • Firstpage
    295
  • Lastpage
    300
  • Abstract
    We study the deployment and configuration of the next generation of network traffic filters within a quantitative framework. Graph-theoretic and optimization methods are utilized to find optimal network traffic filtering strategies that achieve various security or cost objectives subject to hardware or security level constraints. We rely on graph-theoretic concepts such as centrality measures to assess the importance of individual routers within the network, given a traffic pattern. In addition, we consider several possible objectives involving financial costs associated with traffic filtering, the cost of failing to filter traffic, a utility associated with filtering traffic, and combinations of these costs and this utility. These optimization problems are solved taking into account constraints on network-wide filtering capabilities, individual filter capabilities, and also lower and upper bounds on the effective sampling rate for source-destination pairs. Centralized but dynamic solutions of the resulting problems are obtained under varying network traffic flows. The resulting optimal filtering strategies are simulated in MATLAB using real traffic data obtained from the Abilene project. Simulations comparing these strategies with some heuristic approaches demonstrate that they are more effective in achieving network traffic filtering objectives.
  • Keywords
    computer networks; graph theory; invasive software; optimisation; telecommunication security; telecommunication traffic; Abilene project; MATLAB; graph theory; malware filtering; network security; network traffic filters; optimization; weighted optimality measures; Constraint optimization; Cost function; Filtering; Filters; Hardware; Next generation networking; Optimization methods; Telecommunication traffic; Traffic control; Weight measurement;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Control Applications, 2007. CCA 2007. IEEE International Conference on
  • Conference_Location
    Singapore
  • Print_ISBN
    978-1-4244-0442-1
  • Electronic_ISBN
    978-1-4244-0443-8
  • Type

    conf

  • DOI
    10.1109/CCA.2007.4389246
  • Filename
    4389246