• DocumentCode
    2717953
  • Title

    A Model of Collaborative Intrusion Detection System Based on Multi-agents

  • Author

    Ran, Zhang

  • Author_Institution
    Sch. of Comput. & Commun. Eng., Zhengzhou Univ. of Light Ind., Zhengzhou, China
  • fYear
    2012
  • fDate
    11-13 Aug. 2012
  • Firstpage
    789
  • Lastpage
    792
  • Abstract
    With the rapid development of computer network and applications, attacks are becoming more and more complicated and elusive. The traditional intrusion detection systems have been unable to meet new security requirements. This paper proposes a collaborative intrusion detection model based on multi-agents. In this model, four kinds of agents are defined, which are organized in a hierarchical structure. The basic agents in every host or at the entrances of subnets are responsible for performing the simple detection and response tasks. The complicated collaboration task is executed by some separate coordination agents, which are responsible for synthetically analyzing the suspicious behavior that the lower-level agents are unable to identify. Coordination agents are also able to assign the task to the lower-level associated agents. Based on the hierarchical structure, the formal description of the model is given. By adaptive policies and dynamic association among some elements, this model provides dynamic adaptability to the changing environment and attacks. In addition, this paper also proposes the concept of coordination domain which facilitates the management of collaborative detection. The model lays a theoretical foundation for constructing dynamically adaptive intrusion detection system.
  • Keywords
    computer network security; multi-agent systems; collaboration task; collaborative detection; collaborative intrusion detection model; computer network; coordination agents; dynamically adaptive intrusion detection system; hierarchical structure; multiagents; security requirements; Adaptation models; Barium; Collaboration; Computational modeling; Economic indicators; Intrusion detection; collaborative detection; coordination domain; intrusion detection; multi-agent;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Science & Service System (CSSS), 2012 International Conference on
  • Conference_Location
    Nanjing
  • Print_ISBN
    978-1-4673-0721-5
  • Type

    conf

  • DOI
    10.1109/CSSS.2012.202
  • Filename
    6394440