Title :
A Model of Collaborative Intrusion Detection System Based on Multi-agents
Author_Institution :
Sch. of Comput. & Commun. Eng., Zhengzhou Univ. of Light Ind., Zhengzhou, China
Abstract :
With the rapid development of computer network and applications, attacks are becoming more and more complicated and elusive. The traditional intrusion detection systems have been unable to meet new security requirements. This paper proposes a collaborative intrusion detection model based on multi-agents. In this model, four kinds of agents are defined, which are organized in a hierarchical structure. The basic agents in every host or at the entrances of subnets are responsible for performing the simple detection and response tasks. The complicated collaboration task is executed by some separate coordination agents, which are responsible for synthetically analyzing the suspicious behavior that the lower-level agents are unable to identify. Coordination agents are also able to assign the task to the lower-level associated agents. Based on the hierarchical structure, the formal description of the model is given. By adaptive policies and dynamic association among some elements, this model provides dynamic adaptability to the changing environment and attacks. In addition, this paper also proposes the concept of coordination domain which facilitates the management of collaborative detection. The model lays a theoretical foundation for constructing dynamically adaptive intrusion detection system.
Keywords :
computer network security; multi-agent systems; collaboration task; collaborative detection; collaborative intrusion detection model; computer network; coordination agents; dynamically adaptive intrusion detection system; hierarchical structure; multiagents; security requirements; Adaptation models; Barium; Collaboration; Computational modeling; Economic indicators; Intrusion detection; collaborative detection; coordination domain; intrusion detection; multi-agent;
Conference_Titel :
Computer Science & Service System (CSSS), 2012 International Conference on
Conference_Location :
Nanjing
Print_ISBN :
978-1-4673-0721-5
DOI :
10.1109/CSSS.2012.202