Title :
An intelligent agent security intrusion system
Author :
Pikoulas, J. ; Buchanan, W. ; Mannion, M. ; Triantafyllopoulos, K.
Author_Institution :
Napier Univ. of Edinburgh, UK
Abstract :
Network security has now become one of the most important aspects in computer systems and the Internet. Apart from strong encryption, there is no definite method of truly securing network, thus they must be protected at different levels of the OSI model. At the physical layer, they can be protected by lock-and-key, and at the data link, they can be protected within VLANS (virtual LANs). With the network and transport layers, networks can be secured by firewalls, which monitor source and destination network addresses, and source and destination ports, respectively. At the session level, user names and passwords are be used. Unfortunately, all these methods can be prone to methods which can overcome the protection used. This paper expands the research previously undertaken on a misuse system based on the intelligent agent software technology. The system monitors user actions in real-time and take appropriate actions if necessary. Along with this our system uses a short-term prediction to predict the user behaviour and advises the system administrator accordingly, before the actual actions take place. This paper presents new results, which are based on an increased number of users. We tested our short-term prediction model, introduced the notion of intervention to our model, and found that the results are very close to the actual user behaviour
Keywords :
computer network management; computerised monitoring; real-time systems; security of data; software agents; computer network security; encryption; intelligent agents; network protection; real-time systems; security intrusion system; short-term prediction; user actions monitoring; user behaviour prediction; Computer networks; Computer security; Cryptography; Data encapsulation; IP networks; Intelligent agent; Monitoring; Physical layer; Predictive models; Protection;
Conference_Titel :
Engineering of Computer-Based Systems, 2002. Proceedings. Ninth Annual IEEE International Conference and Workshop on the
Conference_Location :
Lund
Print_ISBN :
0-7695-1549-5
DOI :
10.1109/ECBS.2002.999827