• DocumentCode
    3098165
  • Title

    AWide Area Log Analyzing System Based on Mobile Agents

  • Author

    Katoh, Takashi ; Kuzuno, Hiroki ; Kawahara, Takuya ; Watanabe, Atsumu ; Nakai, Yushi ; Bista, Bhed Bahadur ; Takata, Toyoo

  • Author_Institution
    Twate Prefectural Univ., Iwate
  • fYear
    2006
  • fDate
    Nov. 28 2006-Dec. 1 2006
  • Firstpage
    26
  • Lastpage
    26
  • Abstract
    The Internet is being widely used these days and many users are required to manage their network environments, because damages caused by worms, which spread using security holes of software, are also increasing rapidly. One of the effective means of detecting the damages caused by the worms in early stage is to analyze the network communication logs stored in computers that are spread over a wide area. However, almost all network administrators are not able to install many observation points, though a large number of observation points over a wide area of a network are needed to grasp symptoms of attacks precisely. In this paper, we propose an agent based log analyzing system by integrating the concepts of P2P network and mobile agents to realize detection and protection from the damages which may be caused by the worms in early stage. We also show results of experiments using our prototype system. The results show that our system can collect useful information from a wide area of a network, and provide means of flexible and on-demand analysis of network traffic logs to detect hostile attacks on the network.
  • Keywords
    Internet; mobile agents; peer-to-peer computing; security of data; system monitoring; Internet; P2P network; hostile attacks detection; mobile agents; network administrators; network communication logs; network traffic logs; wide area log analyzing system; Cause effect analysis; Communication system security; Computer network management; Computer networks; Computer worms; Environmental management; IP networks; Mobile agents; Protection; Prototypes;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence for Modelling, Control and Automation, 2006 and International Conference on Intelligent Agents, Web Technologies and Internet Commerce, International Conference on
  • Conference_Location
    Sydney, NSW
  • Print_ISBN
    0-7695-2731-0
  • Type

    conf

  • DOI
    10.1109/CIMCA.2006.56
  • Filename
    4052673