Virtual Machine-based Intrusion Detection System Framework in Cloud Computing Environment

被引:9
|
作者
Wang, Huaibin [1 ]
Zhou, Haiyun [1 ]
Wang, Chundong [1 ]
机构
[1] Tianjin Univ Technol, Minist Educ, Key Lab Comp Vis & Syst, Tianjin, Peoples R China
关键词
cloud computing; VM-based IDS; cloud alliance; communication agent; detection rate;
D O I
10.4304/jcp.7.10.2397-2403
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Cloud computing an emerging approach by sharing infrastructure is an overwhelming trend. While in the process of cloud deployment, the security issues can not be underestimated. Traditional Intrusion Detection System (IDS) because of lower detection rate and higher false rate couldn't be suitable the cloud here. Extensibility is the main requirement for IDS framework of cloud environment in this paper as follows. First the cross-platform and strong isolation properties of virtualization have been fully reflected here, that is to say, an extensible VM-based multiple IDSs are deployed in each layer to monitor specific virtual component. Moreover, during the process, we also propose the cloud alliance concept by the communication agents exchanging the mutual alerts mainly to resist Denial-of-Service (DoS) and Distributed Denial-of-Service (DDoS) the single point attack of failure. On this basis, we have the identity certification of the communication agents to improve the reliability of the alerts. Through the comparison of simulation results, the proposed system framework has a great advantage for monitoring VMs on the detection rate.
引用
收藏
页码:2397 / 2403
页数:7
相关论文
共 50 条
  • [1] Virtual Machine-Based Task Scheduling Algorithm in a Cloud Computing Environment
    Zhong, Zhifeng
    Chen, Kun
    Zhai, Xiaojun
    Zhou, Shuange
    [J]. TSINGHUA SCIENCE AND TECHNOLOGY, 2016, 21 (06) : 660 - 667
  • [2] Virtual Machine-Based Task Scheduling Algorithm in a Cloud Computing Environment
    Zhifeng Zhong
    Kun Chen
    Xiaojun Zhai
    Shuange Zhou
    [J]. Tsinghua Science and Technology, 2016, 21 (06) : 660 - 667
  • [3] VNIDS: A Virtual Machine-based Network Intrusion Detection System
    Zhao, Feng
    Yang, Weiping
    Jin, Hai
    Wu, Song
    [J]. 2008 2ND INTERNATIONAL CONFERENCE ON ANTI-COUNTERFEITING, SECURITY AND IDENTIFICATION, 2008, : 254 - 259
  • [4] HIDS: A host based intrusion detection system for cloud computing environment
    Deshpande P.
    Sharma S.C.
    Peddoju S.K.
    Junaid S.
    [J]. International Journal of System Assurance Engineering and Management, 2018, 9 (3) : 567 - 576
  • [5] FCM–SVM based intrusion detection system for cloud computing environment
    Aws Naser Jaber
    Shafiq Ul Rehman
    [J]. Cluster Computing, 2020, 23 : 3221 - 3231
  • [6] The Research of Intrusion Detection System in Cloud Computing Environment
    Wang, Huaibin
    Zhou, Haiyun
    [J]. ADVANCES IN MULTIMEDIA, SOFTWARE ENGINEERING AND COMPUTING, VOL 1, 2011, 128 : 45 - 49
  • [7] A Secure Machine to Machine-Based Framework for Service Provisioning in Cloud Computing Infrastructures
    Cagalaban, Giovanni
    Ahn, Jae Young
    Kim, Seoksoo
    [J]. BUSINESS, ECONOMICS, FINANCIAL SCIENCES, AND MANAGEMENT, 2012, 143 : 409 - +
  • [8] FCM-SVM based intrusion detection system for cloud computing environment
    Jaber, Aws Naser
    Ul Rehman, Shafiq
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2020, 23 (04): : 3221 - 3231
  • [9] Efficacious Novel Intrusion Detection System for Cloud Computing Environment
    Rana, Pooja
    Batra, Isha
    Malik, Arun
    Ra, In-Ho
    Lee, Oh-Sung
    Hosen, A. S. M. Sanwar
    [J]. IEEE ACCESS, 2024, 12 : 99223 - 99239
  • [10] Study of Immune-Based Intrusion Detection Technology in Virtual Machines for Cloud Computing Environment
    Zhang, Ruirui
    Xiao, Xin
    [J]. MOBILE INFORMATION SYSTEMS, 2017, 2017