A distributed intrusion detection model for the domain name system

被引:0
|
作者
Chen, CS [1 ]
Tseng, SS [1 ]
Liu, CL [1 ]
机构
[1] Natl Chiao Tung Univ, Dept Comp Sci & Informat Sci, Hsinchu 300, Taiwan
关键词
DoS; DNS; distributed two-phase DNS anomaly detection; IDS; two-phase anomaly detection algorithms;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We have investigated the problem of detecting DoS-like DNS anomalies in DNS system. In this paper, we propose a distributed Two-phase DNS anomaly detection model for solving the problem. Three sets of algorithms corresponding to different configurations are proposed, including one sequential algorithm and two distributed algorithms, each with an increasing level of parallelism. The complexity of these algorithms have been found to be O (n l(og)n). The distributed algorithms show at least a constant (1-1/C-k), C-k > 1, improvement over the sequential one. To evaluate the performance, we have implemented the algorithms and applied them to a number of examples. The experimental result shows a speed up of about 1.68 on the test example for running on an enhanced distributed architecture with C-IDS over the sequential one. A higher speedup might be common because DNS anomalies will make the traffic distribution more concentrated on the outliers, and the computation will usually converge much more quickly.
引用
收藏
页码:999 / 1009
页数:11
相关论文
共 50 条
  • [41] Distributed agents model for intrusion detection based on AIS
    Yang, Jin
    Liu, Xiaojie
    Li, Tao
    Liang, Gang
    Li, SunJun
    [J]. KNOWLEDGE-BASED SYSTEMS, 2009, 22 (02) : 115 - 119
  • [42] Adaptive Distributed Intrusion Detection Using Parametric Model
    Gao, Jun
    Hu, Weiming
    Zhang, Xiaoqin
    Li, Xi
    [J]. 2009 IEEE/WIC/ACM INTERNATIONAL JOINT CONFERENCES ON WEB INTELLIGENCE (WI) AND INTELLIGENT AGENT TECHNOLOGIES (IAT), VOL 1, 2009, : 675 - 678
  • [43] Ontology-based Distributed Intrusion Detection System
    Abdoli, F.
    Kahani, M.
    [J]. 2009 14TH INTERNATIONAL COMPUTER CONFERENCE, 2009, : 65 - +
  • [44] Design of a cooperative distributed intrusion detection system for AODV
    Minh, Trang Cao
    Kong, Hyung-Yun
    [J]. UBIQUITOUS CONVERGENCE TECHNOLOGY, 2007, 4412 : 252 - +
  • [45] Modeling of distributed intrusion detection using fuzzy system
    Seo, Heesuk
    Kim, Taekyung
    Kim, Hyungjong
    [J]. COMPUTATIONAL INTELLIGENCE, PT 2, PROCEEDINGS, 2006, 4114 : 165 - 170
  • [46] RESEARCH OF A HYBRID DISTRIBUTED NETWORK INTRUSION DETECTION SYSTEM
    Li, Qin
    Yan, Danfeng
    Yang, Fangchun
    [J]. CIICT 2008: PROCEEDINGS OF CHINA-IRELAND INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATIONS TECHNOLOGIES 2008, 2008, : 301 - 305
  • [47] Distributed intrusion detection system and its apperception ability
    Chen, S.
    An, C.Q.
    Li, X.N.
    [J]. Ruan Jian Xue Bao/Journal of Software, 2001, 12 (02): : 225 - 232
  • [48] Robust Distributed Intrusion Detection System for Edge of Things
    Lalouani, Wassila
    Younis, Mohamed
    [J]. 2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [49] Distributed intrusion detection system for CubeSats, based on deep learning packets classification model
    Driouch, Otman
    Bah, Slimane
    Guennoun, Zouhair
    [J]. 2024 SECURITY FOR SPACE SYSTEMS CONFERENCE, 3S 2024, 2024,
  • [50] Towards Realizing a Distributed Event and Intrusion Detection System
    Chen, Qian
    Kholidy, Hisham A.
    Abdelwahed, Sherif
    Hamilton, John
    [J]. FUTURE NETWORK SYSTEMS AND SECURITY, FNSS 2017, 2017, 759 : 70 - 83