A misuse detection agent for intrusion detection in a multi-agent architecture

被引:0
|
作者
Mosqueira-Rey, Eduardo [1 ]
Alonso-Betanzos, Amparo [1 ]
Baldonedo del Rio, Belen [1 ]
Lago Pineiro, Jesus [1 ]
机构
[1] Univ A Coruna, La Coruna 15071, Spain
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
We describe the design of a misuse detection agent, one of the different agents in a multiagent-based intrusion detection system. This system is being implemented in JADE, a well-known multiagent platform based in Java. The agent analyzes the packets in the network connections using a packet sniffer and then creates a data model based on the information obtained. This data model is the input to a rule-based agent inference engine, which uses the Rete algorithm for pattern matching, and the rules of the signature-based intrusion detection system Snort. Specifically, an implementation in Java language - the Drools-JBoss Rules- was used, and a parser was implemented that converts Snort rules to Drools rules. The use of object-oriented techniques, together with design patterns, means that the agent is flexible, easily configurable and extensible.
引用
收藏
页码:466 / +
页数:3
相关论文
共 50 条
  • [21] Multi-agent Cooperative Intrusion Detection Based on Generative Data Augmentation
    Liu, Ming
    Jia, Yungang
    Li, Chao
    Fu, Peiguo
    Zhang, Zhen
    [J]. ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2023, PT VI, 2024, 14492 : 311 - 328
  • [22] A deep learning-based multi-agent system for intrusion detection
    Louati, Faten
    Ktata, Farah Barika
    [J]. SN APPLIED SCIENCES, 2020, 2 (04)
  • [23] Multi-Agent Reinforcement Learning for Intrusion Detection: A Case Study and Evaluation
    Servin, Arturo
    Kudenko, Daniel
    [J]. MULTIAGENT SYSTEM TECHNOLOGIES, PROCEEDINGS, 2008, 5244 : 159 - 170
  • [24] Multi-Agent Reinforcement Learning for Intrusion Detection: A case study and evaluation
    Servin, Arturo
    Kudenko, Daniel
    [J]. ECAI 2008, PROCEEDINGS, 2008, 178 : 873 - +
  • [25] On some method for intrusion detection used by the multi-agent monitoring system
    Prusiewicz, Agnieszka
    [J]. COMPUTATIONAL SCIENCE - ICCS 2008, PT 3, 2008, 5103 : 614 - 623
  • [26] Message cooperation in intrusion detection system based on open multi-agent
    Cui, G.
    Liu, G.
    [J]. Huazhong Ligong Daxue Xuebao/Journal Huazhong (Central China) University of Science and Technology, 2001, 29 (11): : 42 - 44
  • [27] Multi-agent Artificial Immune System for Network Intrusion Detection and Classification
    Aziz, Amira Sayed A.
    Hanafi, Sanaa El-Ola
    Hassanien, Aboul Ella
    [J]. INTERNATIONAL JOINT CONFERENCE SOCO'14-CISIS'14-ICEUTE'14, 2014, 299 : 145 - 154
  • [28] A multi-agent intrusion detection model based on importance feature extraction
    Yang, Yu
    He, Ping
    Xing, Shengli
    [J]. INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2024, 27 (04) : 484 - 494
  • [29] Multi-Agent Intrusion Detection System Using Feature Selection Approach
    Gong, Yi
    Fang, Yong
    Liu, Liang
    Li, Juan
    [J]. 2014 TENTH INTERNATIONAL CONFERENCE ON INTELLIGENT INFORMATION HIDING AND MULTIMEDIA SIGNAL PROCESSING (IIH-MSP 2014), 2014, : 528 - 531
  • [30] A deep learning-based multi-agent system for intrusion detection
    Faten Louati
    Farah Barika Ktata
    [J]. SN Applied Sciences, 2020, 2