Collaborative Distributed Intrusion Detection System

被引:0
|
作者
Lin, Wei [1 ,2 ]
Xiang, Liu [3 ]
Pao, Derek [2 ]
Liu, Bin [1 ]
机构
[1] Tsinghua Univ, Dept Comp Sci & Technol, Beijing 100084, Peoples R China
[2] City Univ Hong Kong, Dept Elect Engn, Hong Kong, Hong Kong, Peoples R China
[3] Tsinghua Univ, Dept Elect Engn, Beijing, Peoples R China
基金
高等学校博士学科点专项科研基金;
关键词
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
In order to protect Internet users from various attacks such as worms, viruses and other intrusions, signature-based intrusion detection system (IDS) should be deployed at the critical part of the network with rapid response for updating newly emerged attack signatures and containing the spread of worms or viruses at their early stage. The processing speed of one IDS cannot achieve the throughput requirement in the core networks because of the pattern matching, the key operation for signature-based IDS, is complex and time consuming. In this paper, it argues that if the signature set is shared by multiple IDSs, a packet needs to be checked once and once only by one of the IDSs, so traffic load can be redistributed among the IDSs to avoid local congestion. Packet marking is used to indicate the status of this packet utilized by collaborative IDSs, and a redistribution strategy named inner logical ring (ILR) is built among IDSs to redistribute the traffic load. Meanwhile, caching scheme is used to keep sequence for packets belonging to the same flow. This collaborative distributed IDS is robust with rapid response to various attacks, and the detection throughput is significantly increased from the throughput of the weakest IDS to the summation of all the collaborative IDSs.
引用
下载
收藏
页码:170 / +
页数:2
相关论文
共 50 条
  • [31] Distributed Privacy-Preserving Collaborative Intrusion Detection Systems for VANETs
    Zhang, Tao
    Zhu, Quanyan
    IEEE TRANSACTIONS ON SIGNAL AND INFORMATION PROCESSING OVER NETWORKS, 2018, 4 (01): : 148 - 161
  • [32] A Collaborative Intrusion Detection System against DDoS for SDN
    Chen, Xiaofan
    Yu, Shunzheng
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2016, E99D (09) : 2395 - 2399
  • [33] Decentralised Trustworthy Collaborative Intrusion Detection System for IoT
    Putra, Guntur Dharma
    Dedeoglu, Volkan
    Pathak, Abhinav
    Kanhere, Salil S.
    Jurdak, Raja
    2021 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2021), 2021, : 306 - 313
  • [34] A Collaborative Intrusion Detection and Prevention System in Cloud Computing
    Hassani, Mohamed
    Lebbat, Adil
    Talial, Saida
    Imedromi, Hicham
    AFRICON, 2013, 2013,
  • [35] A peer-to-peer collaborative intrusion detection system
    Zhou, CFV
    Karunasekera, S
    Leckie, C
    2005 13TH IEEE INTERNATIONAL CONFERENCE ON NETWORKS JOINTLY HELD WITH THE 2005 7TH IEEE MALAYSIA INTERNATIONAL CONFERENCE ON COMMUNICATIONS, PROCEEDINGS 1 AND 2, 2005, : 118 - 123
  • [36] Collaborative RFID intrusion detection with an artificial immune system
    Yang, Haidong
    Guo, Jianhua
    Deng, Feiqi
    JOURNAL OF INTELLIGENT INFORMATION SYSTEMS, 2011, 36 (01) : 1 - 26
  • [37] Collaborative Intrusion Detection System for Internet of Things Using Distributed Ledger Technology: A Survey on Challenges and Opportunities
    Wardana, Aulia Arif
    Kolaczek, Grzegorz
    Sukarno, Parman
    INTELLIGENT INFORMATION AND DATABASE SYSTEMS, ACIIDS 2022, PT I, 2022, 13757 : 339 - 350
  • [38] Collaborative RFID intrusion detection with an artificial immune system
    Haidong Yang
    Jianhua Guo
    Feiqi Deng
    Journal of Intelligent Information Systems, 2011, 36 : 1 - 26
  • [39] Detection engine based on host system calls for distributed intrusion detection system
    Peng, XG
    Mi, WT
    Liu, YS
    Wu, YS
    ISTM/2003: 5TH INTERNATIONAL SYMPOSIUM ON TEST AND MEASUREMENT, VOLS 1-6, CONFERENCE PROCEEDINGS, 2003, : 3441 - 3444
  • [40] Using Attacks Ontology in Distributed Intrusion Detection System
    Abdoli, F.
    Kahani, M.
    ADVANCES IN COMPUTER AND INFORMATIOM SCIENCES AND ENGINEERING, 2008, : 153 - +