An Adaptive Intrusion Detection and Defense System Based on Mobile Agents
نویسندگان
چکیده
This paper presents a distributed intrusion detection system (IDS) based on mobile agents that detect intrusion from outside the network segment as well as from inside. A main machine, being a typical intrusion detection system residing at a secure location, creates agents and dispatches them into the network. On each hop, the agents sniff the network traffic and look for abnormal activities by matching against a limited rule set supplied by the main machine. The agents are programmed with enough intelligence to decide whether to send the logged data (captured packets) to the main machine for further analysis. The proposed model comprises three major components: the Network Intrusion Detection Component, the Mobile Agent Platform, and distributed intelligent mobile agents called mobile IDS agents. Finally, we present partial results obtained from an early prototype and a discussion of design and implementation issues, and directions for future work. Keywords: Mobile agents, intrusion detection, distributed systems.
منابع مشابه
A New Intrusion Detection System to deal with Black Hole Attacks in Mobile Ad Hoc Networks
By extending wireless networks and because of their different nature, some attacks appear in these networks which did not exist in wired networks. Security is a serious challenge for actual implementation in wireless networks. Due to lack of the fixed infrastructure and also because of security holes in routing protocols in mobile ad hoc networks, these networks are not protected against attack...
متن کاملDistributed Network Defense
We propose a new paradigm for network defense: a hierarchical network of lightweight, mobile and adaptive tools combined with a distributed, collaborative intrusion detection environment. Agents are integrated with the collaborative IDS in order to provide them with a wider array of information to use in their response activities. This provides for both a mobile and adaptive defense, while stil...
متن کاملMobile Agent Based Network Defense System in Enterprise Network
Security has become the Achilles’ heel of many organizations in today’s computer-dominated society. In this paper, a configurable intrusion detection and response framework named Mobile Agents based Distributed (MAD) security system was proposed for enterprise network consisting of a large number of mobile and handheld devices. The key idea of MAD is to use autonomous mobile agents as lightweig...
متن کاملA Review of Intrusion Detection Defense Solutions Based on Software Defined Network
Most networks without fixed infrastructure are based on cloud computing face various challenges. In recent years, different methods have been used to distribute software defined network to address these challenges. This technology, while having many capabilities, faces some vulnerabilities in the face of some common threats and destructive factors such as distributed Denial of Service. A review...
متن کاملProposing A Distributed Model For Intrusion Detection In Mobile Ad-Hoc Network Using Neural Fuzzy Interface
Security term in mobile ad hoc networks has several aspects because of the special specification of these networks. In this paper a distributed architecture was proposed in which each node performed intrusion detection based on its own and its neighbors’ data. Fuzzy-neural interface was used that is the composition of learning ability of neural network and fuzzy Ratiocination of fuzzy system as...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2013