DocumentCode
2445796
Title
An ontology-based approach to react to network attacks
Author
Cuppens-Boulahia, Nora ; Cuppens, Frédéric ; De Vergara, Jorge E López ; Vázquez ; Guerra, Javier ; Debar, Hervé
Author_Institution
TELECOM Bretagne, Cesson-Sevigne
fYear
2008
fDate
28-30 Oct. 2008
Firstpage
27
Lastpage
35
Abstract
To address the evolution of security incidents in current communication networks it is important to react quickly and efficiently to an attack. The RED (Reaction after Detection) project is defining and designing solutions to enhance the detection/reaction process, improving the overall resilience of IP networks to attacks and help telecommunication and service providers to maintain sufficient quality of service and respect service level agreements. Within this project, a main component is in charge of instantiating new security policies that counteract the network attacks. This paper proposes an ontology-based approach to instantiate these security policies. This technology provides a way to map alerts into attack contexts, which are used to identify the policies to be applied in the network to solve the threat. For this, ontologies to describe alerts and policies are defined, using inference rules to perform such mappings.
Keywords
ontologies (artificial intelligence); quality of service; telecommunication computing; telecommunication network management; telecommunication security; IP networks; Reaction after Detection project; inference rules; network attacks; ontology-based approach; quality of service; Communication networks; Communication system security; IP networks; OWL; Ontologies; Quality of service; Resilience; TV; Telecommunications; Web and internet services; Attack reaction; IDMEF; OWL; OrBAC; SWRL; ontology; policy instantiation;
fLanguage
English
Publisher
ieee
Conference_Titel
Risks and Security of Internet and Systems, 2008. CRiSIS '08. Third International Conference on
Conference_Location
Tozeur
Print_ISBN
978-1-4244-3309-4
Type
conf
DOI
10.1109/CRISIS.2008.4757461
Filename
4757461
Link To Document