Title :
A Dynamic Authentication Mechanism for Real-Time Network Security
Author :
Bossie, Craig ; Fiorini, Pierre M.
Author_Institution :
Univ. of Southern Maine, Portland, ME
Abstract :
Computers networks are only as secure as the weakest computer system attached to them. Thus, the authentication method used by computers on the network affects its safety. Static authentication methods are applied only once at the beginning of a user session. Unfortunately, these methods provide no protection from the interactions a user has after they are logged on and using the system. An ongoing dynamic authentication supplements an intrusion detection system by recognizing a masquerader, or a legitimate user´s change of intent. In this paper, we statistically analyze the underlying distributions of the time between user commands and develop an analytic model that emulates the underlying mathematical properties of user behaviors. From this, we show how the probabilities of users executing a sequence of commands during a session can be ascertained. Finally, via our experimental results, we show how the efficacy of dynamic authentication schemes in networked computing environments can be improved by incorporating our techniques.
Keywords :
computer network management; message authentication; statistical distributions; telecommunication security; computer networks; dynamic authentication mechanism; inter-command time distributions; intrusion detection system; legitimate user intent change; masquerader recognition; real-time network security; user probabilities; Authentication; Biometrics; Computer networks; Computer security; Conferences; Data acquisition; Frequency; Intelligent networks; System testing; Timing; Computer Security; Dynamic Authentication; Network Security; Semi-Markov Processes;
Conference_Titel :
Intelligent Data Acquisition and Advanced Computing Systems: Technology and Applications, 2005. IDAACS 2005. IEEE
Conference_Location :
Sofia
Print_ISBN :
0-7803-9445-3
Electronic_ISBN :
0-7803-9446-1
DOI :
10.1109/IDAACS.2005.283004