A Service Based Approach to a New Generation of Intrusion Detection Systems

被引:2
作者
Bosin, Andrea [1 ]
Dessi, Nicoletta [1 ]
Pes, Barbara [1 ]
机构
[1] Univ Cagliari, Dipartimento Matemat & Informat, I-09124 Cagliari, Italy
来源
PROCEEDINGS OF THE SIXTH IEEE EUROPEAN CONFERENCE ON WEB SERVICES | 2008年
关键词
D O I
10.1109/ECOWS.2008.16
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion Detection Systems (IDSs) aim at detecting malicious or unauthorized activities targeting a network and its resources. Usually engineered as self-contained applications, current IDSs are limited in protecting collaborative computing environments, like grids, whose security amplifies the concerns about intrusions and motivates advanced organizing paradigms and technical solutions for effective attack detection. We envision a new generation of IDSs defined by a set of services supporting security managers in improving the overall network security. Specifically, we show how to model the ID processes as a set of plans that a security manager may go through on a network of cooperative nodes interacting with one another in order to offer or to ask for services. Services correspond to specialized ID tasks and encapsulate problem solving and simulation capabilities. Complex ID activities are expressed by workflows, the focus being on flexibility, reuse and interoperability of ID services. Some implementation hints are suggested.
引用
收藏
页码:215 / 224
页数:10
相关论文
共 35 条
  • [1] ALAMRI A, 2006, INT J WEB GRID SERVI, V2
  • [2] ALLEN G, 2003, INT J HIGH PERFORMAN
  • [3] Alonso G., 2004, DAT SYS APP
  • [4] Berman F., 2003, GRID COMPUTING MAKIN
  • [5] Bosin A, 2006, LECT NOTES COMPUT SC, V3812, P281
  • [6] BOSIN A, 2007, ENCY PORTAL TECHNOLO
  • [7] BOSIN A, 2005, LNAI, V3533
  • [8] BOSIN A, 2004, LNCS, V3177
  • [9] BRANDAO JE, 2006, LNCS, V4275
  • [10] BRANDAO JE, 2006, P IEEE INT C COMM IC