Attributes | Values |
---|
rdf:type
| |
rdfs:seeAlso
| |
Description
| - Protection of network infrastructures against highly sophisticated network attacks requires an intelligent, robust, and adaptive detection system. We present a distributed model for collaboration of multiple heterogeneous intrusion detection sensors. The proposed model assumes that each network can be monitored with multiple detection sensors deployed in various locations. The model optimizes behavior of each sensor with respect to other sensors in highly dynamic network environments by using a game-theoretical approach. We propose a general formalization of the problem of distributed collaboration as a game between defenders and attackers and introduce a trust-based solution concept ε-FIRE that is suitable for solving this game in highly dynamic environments, preventing any poisoning or manipulation of the cooperative system by intelligent attackers. According to our experimental evaluation on real network traffic, the proposed model of distributed collaboration shows clear improvements in the overall detection capabilities of the system, caused by mutual specialization of individual detection sensors. The concept of opponent aware, self-coordinating and strategically reasoning Intrusion Detection Network represents an effective next-generation solution that may match a market-based collaboration structures of the attackers.
- Protection of network infrastructures against highly sophisticated network attacks requires an intelligent, robust, and adaptive detection system. We present a distributed model for collaboration of multiple heterogeneous intrusion detection sensors. The proposed model assumes that each network can be monitored with multiple detection sensors deployed in various locations. The model optimizes behavior of each sensor with respect to other sensors in highly dynamic network environments by using a game-theoretical approach. We propose a general formalization of the problem of distributed collaboration as a game between defenders and attackers and introduce a trust-based solution concept ε-FIRE that is suitable for solving this game in highly dynamic environments, preventing any poisoning or manipulation of the cooperative system by intelligent attackers. According to our experimental evaluation on real network traffic, the proposed model of distributed collaboration shows clear improvements in the overall detection capabilities of the system, caused by mutual specialization of individual detection sensors. The concept of opponent aware, self-coordinating and strategically reasoning Intrusion Detection Network represents an effective next-generation solution that may match a market-based collaboration structures of the attackers. (en)
|
Title
| - Trust-based Solution for Robust Self-configuration of Distributed Intrusion Detection Systems
- Trust-based Solution for Robust Self-configuration of Distributed Intrusion Detection Systems (en)
|
skos:prefLabel
| - Trust-based Solution for Robust Self-configuration of Distributed Intrusion Detection Systems
- Trust-based Solution for Robust Self-configuration of Distributed Intrusion Detection Systems (en)
|
skos:notation
| - RIV/68407700:21230/12:00194835!RIV13-MSM-21230___
|
http://linked.open...avai/riv/aktivita
| |
http://linked.open...avai/riv/aktivity
| - P(ME10051), P(VG20122014079), S
|
http://linked.open...vai/riv/dodaniDat
| |
http://linked.open...aciTvurceVysledku
| |
http://linked.open.../riv/druhVysledku
| |
http://linked.open...iv/duvernostUdaju
| |
http://linked.open...titaPredkladatele
| |
http://linked.open...dnocenehoVysledku
| |
http://linked.open...ai/riv/idVysledku
| - RIV/68407700:21230/12:00194835
|
http://linked.open...riv/jazykVysledku
| |
http://linked.open.../riv/klicovaSlova
| - distributed collaboration; intrusion detection; trust; specialization; network security (en)
|
http://linked.open.../riv/klicoveSlovo
| |
http://linked.open...ontrolniKodProRIV
| |
http://linked.open...v/mistoKonaniAkce
| |
http://linked.open...i/riv/mistoVydani
| |
http://linked.open...i/riv/nazevZdroje
| - ECAI 2012 - 20th European Conference on Artificial Intelligence
|
http://linked.open...in/vavai/riv/obor
| |
http://linked.open...ichTvurcuVysledku
| |
http://linked.open...cetTvurcuVysledku
| |
http://linked.open...vavai/riv/projekt
| |
http://linked.open...UplatneniVysledku
| |
http://linked.open...iv/tvurceVysledku
| - Bartoš, Karel
- Rehák, Martin
|
http://linked.open...vavai/riv/typAkce
| |
http://linked.open.../riv/zahajeniAkce
| |
issn
| |
number of pages
| |
http://bibframe.org/vocab/doi
| - 10.3233/978-1-61499-098-7-121
|
http://purl.org/ne...btex#hasPublisher
| |
https://schema.org/isbn
| |
http://localhost/t...ganizacniJednotka
| |