• DocumentCode
    3237748
  • Title

    A Dynamic Authentication Mechanism for Real-Time Network Security

  • Author

    Bossie, Craig ; Fiorini, Pierre M.

  • Author_Institution
    Univ. of Southern Maine, Portland, ME
  • fYear
    2005
  • fDate
    5-7 Sept. 2005
  • Firstpage
    360
  • Lastpage
    365
  • Abstract
    Computers networks are only as secure as the weakest computer system attached to them. Thus, the authentication method used by computers on the network affects its safety. Static authentication methods are applied only once at the beginning of a user session. Unfortunately, these methods provide no protection from the interactions a user has after they are logged on and using the system. An ongoing dynamic authentication supplements an intrusion detection system by recognizing a masquerader, or a legitimate user´s change of intent. In this paper, we statistically analyze the underlying distributions of the time between user commands and develop an analytic model that emulates the underlying mathematical properties of user behaviors. From this, we show how the probabilities of users executing a sequence of commands during a session can be ascertained. Finally, via our experimental results, we show how the efficacy of dynamic authentication schemes in networked computing environments can be improved by incorporating our techniques.
  • Keywords
    computer network management; message authentication; statistical distributions; telecommunication security; computer networks; dynamic authentication mechanism; inter-command time distributions; intrusion detection system; legitimate user intent change; masquerader recognition; real-time network security; user probabilities; Authentication; Biometrics; Computer networks; Computer security; Conferences; Data acquisition; Frequency; Intelligent networks; System testing; Timing; Computer Security; Dynamic Authentication; Network Security; Semi-Markov Processes;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Intelligent Data Acquisition and Advanced Computing Systems: Technology and Applications, 2005. IDAACS 2005. IEEE
  • Conference_Location
    Sofia
  • Print_ISBN
    0-7803-9445-3
  • Electronic_ISBN
    0-7803-9446-1
  • Type

    conf

  • DOI
    10.1109/IDAACS.2005.283004
  • Filename
    4062155