Title :
A Method of In-Depth-Defense for Network Security Based on Immunity Principles
Author :
Jiang, YaPing ; Zhou, Jianhua ; Gan, Yong ; Cai, Zengyu
Author_Institution :
Sch. of Comput. & Commun. Eng., Zhengzhou Univ. o f Light Ind., Zhengzhou, China
Abstract :
The concepts of self, nonself, antibody, antigen and vaccine in in-depth-defense system for network security was presented in this paper, the architecture of in-depth defense for network intrusion and detection based on immune principle is proposed. The intrusion information gotten from current monitored network is encapsulated and sent to the neighbor network as bacterin; therefore the neighbor network can make use of the bacterin and predict the danger of network. We can use communicate agent cooperated with response agent to achieve active defense formwork. The experimental results show that the new model not only actualizes an active prevention method but also improves the ability of intrusion detection and prevention than that of the traditional passive intrusion prevention systems.
Keywords :
biology computing; multi-agent systems; security of data; communicate agent; immunity principles; in-depth-defense system; intrusion detection system; network security; passive intrusion prevention systems; Cloning; Communication system security; Computer networks; Computer security; Humans; Immune system; Information security; Intrusion detection; Packaging; Vaccines; AIS; IDS; Network security; network defense;
Conference_Titel :
Parallel and Distributed Processing with Applications, 2009 IEEE International Symposium on
Conference_Location :
Chengdu
Print_ISBN :
978-0-7695-3747-4
DOI :
10.1109/ISPA.2009.65