A Framework for Large-Scale Simulation of Collaborative Intrusion Detection Systems

被引:0
|
作者
Fisch, Dominik [1 ]
Hofmann, Alexander [1 ]
Hornik, Valentin [1 ]
Dedinski, Ivan [1 ]
Sick, Bernhard [1 ]
机构
[1] Univ Passau, Inst Comp Architectures, Passau, Germany
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Distributed intrusion detection and prevention play an increasingly important role in securing computer networks. In a distributed intrusion detection system, information about the current situation and knowledge about attacks are exchanged, aggregated, fused, and correlated in a cooperative manner to overcome the limitations of conventional centralized intrusion detection systems. However, this distributed approach introduces new challenges such as self-organization and efficient communication techniques. In this paper we propose a novel framework for developing, simulating, and deploying a distributed intrusion detection system that consists of several collaborating agents. The framework provides a programming interface and comprises all essential communication and synchronization methods that enables self-organized collaboration in a completely distributed manner. In two experiments we demonstrate the performance and capabilities of our implementation by simulating a large-scale worm outbreak and a one-to-many attack. Furthermore, we present two applications of our framework to show how collaboration of agents can be used to detect one-to-many attacks and how detection performance benefits from cooperation of agents.
引用
收藏
页码:125 / 130
页数:6
相关论文
共 50 条
  • [1] Intrusion and misuse detection in large-scale systems
    Erbacher, RF
    Walker, KL
    Frincke, DA
    [J]. IEEE COMPUTER GRAPHICS AND APPLICATIONS, 2002, 22 (01) : 38 - 47
  • [2] Intrusion and misuse detection in large-scale systems
    Erbacher, Robert F.
    Walker, Kenneth L.
    Frincke, Deborah A.
    [J]. Pollution Engineering, 2002, 34 (02) : 40 - 48
  • [3] Collaborative Fault Detection for Large-Scale Photovoltaic Systems
    Zhao, Yingying
    Li, Dongsheng
    Lu, Tun
    Lv, Qin
    Gu, Ning
    Shang, Li
    [J]. IEEE TRANSACTIONS ON SUSTAINABLE ENERGY, 2020, 11 (04) : 2745 - 2754
  • [4] Research on the strategy of large-scale distributed intrusion detection systems
    Zhu, Wen-Tao
    Li, Jin-Sheng
    Hong, Pei-Lin
    [J]. 2003, Shenyang Institute of Computing Technology (24):
  • [5] The simulation and analysis of the large-scale intrusion detection model in shuffle networks
    Likewei
    [J]. MECHATRONICS ENGINEERING, COMPUTING AND INFORMATION TECHNOLOGY, 2014, 556-562 : 2878 - 2881
  • [6] A Framework for Automated Collaborative Fault Detection in Large-Scale Vehicle Networks
    Maroli, John
    Ozguner, Umit
    Redmill, Keith
    [J]. 2019 30TH IEEE INTELLIGENT VEHICLES SYMPOSIUM (IV19), 2019, : 1923 - 1927
  • [7] Simulation Framework for Modeling Large-Scale Flexible Transit Systems
    Jung, Jaeyoung
    Jayakrishnan, R.
    [J]. TRANSPORTATION RESEARCH RECORD, 2014, (2466) : 31 - 41
  • [8] Evaluation of a decentralized architecture for large scale collaborative intrusion detection
    Zhou, Chenfeng Vincent
    Karunasekera, Shanika
    Leckie, Christopher
    [J]. 2007 10TH IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009), VOLS 1 AND 2, 2007, : 80 - +
  • [9] CPSSim: Simulation Framework for Large-Scale Cyber-Physical Systems
    Chu, Chia-Tse
    Shih, Chi-Sheng
    [J]. 2013 IEEE 1ST INTERNATIONAL CONFERENCE ON CYBER-PHYSICAL SYSTEMS, NETWORKS, AND APPLICATIONS (CPSNA), 2013, : 44 - 51
  • [10] An HLA-based framework for simulation of large-scale critical systems
    Ficco, Massimo
    Avolio, Giovanni
    Palmieri, Francesco
    Castiglione, Aniello
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2016, 28 (02): : 400 - 419