A new ontology-based multi agent framework for intrusion detection

被引:2
|
作者
Retnaswamy, Bharathi [1 ]
Ponniah, Krishna Kumar [2 ]
机构
[1] Univ Coll Engn, Nagercoil, Tamil Nadu, India
[2] PET Engn Coll, Dept Comp Sci & Engn, Vallioor 627117, Tamil Nadu, India
关键词
deputy commander; intrusion detection system (IDS); IDS broker; KDD Cup 1999; ontology; response agent; semantic mapping; sense matching; SECURITY; SYSTEM; ARCHITECTURE; ATTACKS;
D O I
10.1002/dac.3189
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Ontologies play an essential role in knowledge sharing and exploration, especially in multiagent systems. Intrusion is an unauthorized activity in a network, which is achieved by either active manner (information gathering) or passive manner (harmful packet forwarding). Most of the existing intrusion detection system (IDS) suffers from the following issues: it is usually adjusted to detect known service level network attacks and leaves from vulnerable to original and novel malicious attacks. Thus, it provides low accuracy and detection rate, which are the important problems of existing IDS. To overwhelm these drawbacks, an ontology-based multiagent IDS framework is developed in this work for intrusion detection. The main intention of this work is to detect the network attacks with the help of multiple detection agents. In this analysis, there are 3 different types of agents, ie, IDS broker, deputy commander, and response agent, which are used to prevent and detect the attacks in a network. The novel concept of this work is based on the concept of signature matching; it identifies and detects the attackers with the help of multiple agents.
引用
收藏
页码:2490 / 2502
页数:13
相关论文
共 50 条
  • [1] From Intrusion Detection to Intrusion Detection and Diagnosis: An Ontology-Based Approach
    Coppolino, Luigi
    D'Antonio, Salvatore
    Elia, Ivano Alessandro
    Romano, Luigi
    [J]. SOFTWARE TECHNOLOGIES FOR EMBEDDED AND UBIQUITOUS SYSTEMS, PROCEEDINGS, 2009, 5860 : 192 - 202
  • [2] Ontology-based Distributed Intrusion Detection System
    Abdoli, F.
    Kahani, M.
    [J]. 2009 14TH INTERNATIONAL COMPUTER CONFERENCE, 2009, : 65 - +
  • [3] An Ontology-based Intrusion Detection for RFID Systems
    Esposito, M.
    Della Vecchia, G.
    [J]. TECHNOLOGICAL DEVELOPMENTS IN NETWORKING, EDUCATION AND AUTOMATION, 2010, : 467 - 472
  • [4] An Ontology-based Multiagent Architecture for Outbound Intrusion Detection
    Mandujano, Salvador
    Galvan, Arturo
    Nolazco, Juan A.
    [J]. 3RD ACS/IEEE INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS, 2005, 2005,
  • [5] Ontology-Based Knowledge Representation for a P2P Multi-Agent Distributed Intrusion Detection System
    Ye, Dayong
    Bai, Quan
    Zhano, Minjie
    [J]. 2008 IFIP INTERNATIONAL CONFERENCE ON NETWORK AND PARALLEL COMPUTING, PROCEEDINGS, 2008, : 111 - 118
  • [6] Towards Ontology-Based Intelligent Model for Intrusion Detection and Prevention
    Isaza, Gustavo
    Castillo, Andres
    Lopez, Manuel
    Castillo, Luis
    [J]. COMPUTATIONAL INTELLIGENCE IN SECURITY FOR INFORMATION SYSTEMS, 2009, 63 : 109 - +
  • [7] An Ontology-Based Multi-Agent System for Active Software Engineering Ontology
    Pakdeetrakulwong, Udsanee
    Wongthongtham, Pornpit
    Siricharoen, Waralak V.
    Khan, Naveed
    [J]. MOBILE NETWORKS & APPLICATIONS, 2016, 21 (01): : 65 - 88
  • [8] An Ontology-Based Multi-Agent System for Active Software Engineering Ontology
    Udsanee Pakdeetrakulwong
    Pornpit Wongthongtham
    Waralak V. Siricharoen
    Naveed Khan
    [J]. Mobile Networks and Applications, 2016, 21 : 65 - 88
  • [9] A user-oriented ontology-based approach for network intrusion detection
    Hung, Shao-Shin
    Liu, Damon Shing-Min
    [J]. COMPUTER STANDARDS & INTERFACES, 2008, 30 (1-2) : 78 - 88
  • [10] OSCIDS: An Ontology based SCADA Intrusion Detection Framework
    Al Balushi, Abdullah
    McLaughlin, Kieran
    Sezer, Sakir
    [J]. SECRYPT: PROCEEDINGS OF THE 13TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS - VOL. 4, 2016, : 327 - 335