• DocumentCode
    3018163
  • Title

    A Novel Intrusion Detection Scheme for Network-Attached Storage Based on Multi-source Information Fusion

  • Author

    Geng, Li-zhong ; Jia, Hui-bo

  • Author_Institution
    Dept. of Precision Instrum. & Mechanology, Tsinghua Univ., Beijing, China
  • Volume
    2
  • fYear
    2009
  • fDate
    11-14 Dec. 2009
  • Firstpage
    469
  • Lastpage
    473
  • Abstract
    There are many researches which focus on the security of network-attached storages. The cryptology tools can protect the storages against non-authorized access, but turned out ineffective when malicious authenticated users attack inside. Also the intrusion detection methods are applied in the network-attached storages, such as, storage-based intrusion detection method and the intrusion detection method based on system calls. However, these methods couldn´t obtain higher detection rates with lower false positive rates. This paper proposes a novel intrusion detection scheme to merge the two methods with multi-source information fusion technology. The fusion optimization strategy is provided to guarantee that the fusion scheme can make a more accuracy decision for the suspicious behaviors with more information gathered from different levels of the system. Also the intrusion detection modules in the new scheme can be ¿self-learning¿ and update the profiles by themselves. Experimental results demonstrate that the over capability of new fusion intrusion detection scheme increased by 15%.
  • Keywords
    authorisation; cryptography; sensor fusion; cryptology tools; low false positive rates; malicious authenticated users attack; multisource information fusion technology; network-attached storage security; storage-based intrusion detection method; system calls; Cryptography; Fuses; Fuzzy neural networks; Hidden Markov models; Information security; Instruments; Intrusion detection; Protection; Secure storage; Storage area networks; Information Fusion; Intrusion Detection; NAS;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Security, 2009. CIS '09. International Conference on
  • Conference_Location
    Beijing
  • Print_ISBN
    978-1-4244-5411-2
  • Type

    conf

  • DOI
    10.1109/CIS.2009.262
  • Filename
    5376161