• DocumentCode
    2475092
  • Title

    An intelligent agent security intrusion system

  • Author

    Pikoulas, J. ; Buchanan, W. ; Mannion, M. ; Triantafyllopoulos, K.

  • Author_Institution
    Napier Univ. of Edinburgh, UK
  • fYear
    2002
  • fDate
    2002
  • Firstpage
    94
  • Lastpage
    99
  • Abstract
    Network security has now become one of the most important aspects in computer systems and the Internet. Apart from strong encryption, there is no definite method of truly securing network, thus they must be protected at different levels of the OSI model. At the physical layer, they can be protected by lock-and-key, and at the data link, they can be protected within VLANS (virtual LANs). With the network and transport layers, networks can be secured by firewalls, which monitor source and destination network addresses, and source and destination ports, respectively. At the session level, user names and passwords are be used. Unfortunately, all these methods can be prone to methods which can overcome the protection used. This paper expands the research previously undertaken on a misuse system based on the intelligent agent software technology. The system monitors user actions in real-time and take appropriate actions if necessary. Along with this our system uses a short-term prediction to predict the user behaviour and advises the system administrator accordingly, before the actual actions take place. This paper presents new results, which are based on an increased number of users. We tested our short-term prediction model, introduced the notion of intervention to our model, and found that the results are very close to the actual user behaviour
  • Keywords
    computer network management; computerised monitoring; real-time systems; security of data; software agents; computer network security; encryption; intelligent agents; network protection; real-time systems; security intrusion system; short-term prediction; user actions monitoring; user behaviour prediction; Computer networks; Computer security; Cryptography; Data encapsulation; IP networks; Intelligent agent; Monitoring; Physical layer; Predictive models; Protection;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Engineering of Computer-Based Systems, 2002. Proceedings. Ninth Annual IEEE International Conference and Workshop on the
  • Conference_Location
    Lund
  • Print_ISBN
    0-7695-1549-5
  • Type

    conf

  • DOI
    10.1109/ECBS.2002.999827
  • Filename
    999827