An Intrusion Detection and Prevention Model Based on Intelligent Multi-Agent Systems, Signatures and Reaction Rules Ontologies

被引:0
作者
Isaza, Gustavo A. [1 ]
Castillo, Andres G. [2 ]
Duque, Nestor D. [3 ]
机构
[1] Univ Caldas, Dept Sistemas & Informat, Calle 65 26-10, Manizales, Colombia
[2] Univ Salamanca, Dept Lenguajes Sistemas Informarticos Ingn Softwa, E-37008 Salamanca, Spain
[3] Univ Nacl Colombia, Dept Adm & Sistemas, Nubia, Colombia
来源
7TH INTERNATIONAL CONFERENCE ON PRACTICAL APPLICATIONS OF AGENTS AND MULTI-AGENT SYSTEMS (PAAMS 2009) | 2009年 / 55卷
关键词
Multi-agent systems; Intrusion Prevention; Intrusion Detection Systems; Ontology; Intelligent Security; correlation alarms;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Distributed Intrusion Detection Systems (DIDS) have been integrated to other techniques to incorporate some degree of adaptability. For instance, IDS and intelligent techniques facilitate the automatic generation of new signatures that allow this hybrid approach to detect and prevent unknown attacks patterns. Additionally, agent based architectures offer capabilities such as autonomy, reactivity, pro-activity, mobility and rationality that are desirables in IDSs. This paper presents an intrusion detection and prevention model that integrates an intelligent multi-agent system. The knowledge model is designed and represented with ontological signature, ontology rule representation for intrusion detection and prevention, and event correlation.
引用
收藏
页码:237 / +
页数:3
相关论文
共 36 条
[1]  
ABADEH M, 2007, PARALLEL GENETIC LOC, P1058
[2]  
ALHAMAMI AH, 2006, INFORM COMMUNICATION, V2, P3552
[3]  
BOUKERCHE A, 2007, AGENT BASED BIOL INS, P2649
[4]  
CASTILLO A, 2004, MODELOS PLATAFORMAS
[5]  
CURRY D, 2004, INTRUSION DETECTION
[6]  
*DARPA, 2008, DARPA INTR DET EV 19
[7]   CIDS: An agent-based intrusion detection system [J].
Dasgupta, D ;
Gonzalez, F ;
Yallapu, K ;
Gomez, J ;
Yarramsettii, R .
COMPUTERS & SECURITY, 2005, 24 (05) :387-398
[8]  
DUQUE N, 2008, TENDENCIAS INGENIERI, V2, P99
[9]  
Eid M, 2004, P FEASC, P114
[10]  
FISCHER I, 2002, USER MANUAL VERSION