• DocumentCode
    3028570
  • Title

    A Method of In-Depth-Defense for Network Security Based on Immunity Principles

  • Author

    Jiang, YaPing ; Zhou, Jianhua ; Gan, Yong ; Cai, Zengyu

  • Author_Institution
    Sch. of Comput. & Commun. Eng., Zhengzhou Univ. o f Light Ind., Zhengzhou, China
  • fYear
    2009
  • fDate
    10-12 Aug. 2009
  • Firstpage
    484
  • Lastpage
    487
  • Abstract
    The concepts of self, nonself, antibody, antigen and vaccine in in-depth-defense system for network security was presented in this paper, the architecture of in-depth defense for network intrusion and detection based on immune principle is proposed. The intrusion information gotten from current monitored network is encapsulated and sent to the neighbor network as bacterin; therefore the neighbor network can make use of the bacterin and predict the danger of network. We can use communicate agent cooperated with response agent to achieve active defense formwork. The experimental results show that the new model not only actualizes an active prevention method but also improves the ability of intrusion detection and prevention than that of the traditional passive intrusion prevention systems.
  • Keywords
    biology computing; multi-agent systems; security of data; communicate agent; immunity principles; in-depth-defense system; intrusion detection system; network security; passive intrusion prevention systems; Cloning; Communication system security; Computer networks; Computer security; Humans; Immune system; Information security; Intrusion detection; Packaging; Vaccines; AIS; IDS; Network security; network defense;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Parallel and Distributed Processing with Applications, 2009 IEEE International Symposium on
  • Conference_Location
    Chengdu
  • Print_ISBN
    978-0-7695-3747-4
  • Type

    conf

  • DOI
    10.1109/ISPA.2009.65
  • Filename
    5207894