A collaborative framework for intrusion detection (C-NIDS) in Cloud computing

被引:0
|
作者
Al Haddad, Zayed [1 ]
Hanoune, Mostafa [1 ]
Mamouni, Abdelaziz [1 ]
机构
[1] Hassan II Univ Casablanca, Fac Sci Ben Msik, Lab Informat Technol & Modeling, Casablanca, Morocco
关键词
Security; Cloud Computing; Cloud based IDS; Virtual infrastructure;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, Cloud computing has emerged as a new paradigm for delivering highly scalable and on-demand shared pool IT resources such as networks, servers, storage, applications and services through internet. It enables IT managers to provision services to users faster and in a costeffective way. As a result, this technology is used by an increasing number of end users. On the other hand, existing security deficiencies and vulnerabilities of underlying technologies can leave an open door for intruders. Indeed, one of the major security issues in Cloud is to protect against distributed attacks and other malicious activities on the network that can affect confidentiality, availability and integrity of Cloud resources. In order to solve these problems, we propose a Collaborative Network Intrusion Detection System (C-NIDS) to detect network attacks in Cloud by monitoring network traffic, while offering high accuracy by addressing newer challenges, namely, intrusion detection in virtual network, monitoring high traffic, scalability and resistance capability. In our NIDS framework, we use Snort as a signature based detection to detect known attacks, while for detecting network anomaly, we use Support Vector Machine (SVM). Moreover, in this framework, the NIDS sensors deployed in Cloud operate in collaborative way to oppose the coordinated attacks against cloud infrastructure and knowledge base remains up-to-date.
引用
收藏
页码:261 / 265
页数:5
相关论文
共 50 条
  • [1] An advanced intrusion detection framework for cloud computing
    Ficco, Massimo
    Venticinque, Salvatore
    Di Martino, Beniamino
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2013, 28 (06): : 401 - 411
  • [2] Collaborative Intrusion Detection as a Service in Cloud Computing Environment
    Liang, Hong
    Ge, Yufei
    Wang, Wenjiao
    Chen, Lin
    PROCEEDINGS OF 2015 IEEE INTERNATIONAL CONFERENCE ON PROGRESS IN INFORMATCS AND COMPUTING (IEEE PIC), 2015, : 476 - 480
  • [3] A Collaborative Intrusion Detection and Prevention System in Cloud Computing
    Hassani, Mohamed
    Lebbat, Adil
    Talial, Saida
    Imedromi, Hicham
    AFRICON, 2013, 2013,
  • [4] Integrating Signature Apriori based Network Intrusion Detection System (NIDS) in Cloud Computing
    Modi, Chirag N.
    Patel, Dhiren R.
    Patel, Avi
    Rajarajan, Muttukrishnan
    2ND INTERNATIONAL CONFERENCE ON COMMUNICATION, COMPUTING & SECURITY [ICCCS-2012], 2012, 1 : 905 - 912
  • [5] A Collaborative Study of Intrusion Detection and Prevention Techniques in Cloud Computing
    Alam, Shadab
    Shuaib, Mohammed
    Samad, Abdus
    INTERNATIONAL CONFERENCE ON INNOVATIVE COMPUTING AND COMMUNICATIONS, VOL 1, 2019, 55 : 231 - 240
  • [6] A Novel Hybrid-Network Intrusion Detection System (H-NIDS) in Cloud Computing
    Modi, Chirag N.
    Patel, Dhiren
    2013 IEEE SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE IN CYBER SECURITY (CICS), 2013, : 23 - 30
  • [7] DCDIDP: A Distributed, Collaborative, and Data-driven Intrusion Detection and Prevention Framework for Cloud Computing Environments
    Zargar, Saman Taghavi
    Takabi, Hassan
    Joshi, James B. D.
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON COLLABORATIVE COMPUTING: NETWORKING, APPLICATIONS AND WORKSHARING (COLLABORATECOM), 2011, : 332 - 341
  • [8] An Intrusion Detection Framework for Supporting SLA Assessment in Cloud Computing
    Ficco, Massimo
    Rak, Massimiliano
    Di Martino, Beniamino
    2012 FOURTH INTERNATIONAL CONFERENCE ON COMPUTATIONAL ASPECTS OF SOCIAL NETWORKS (CASON), 2012, : 244 - 249
  • [9] Intrusion Detection in Cloud Computing
    Ficco, Massimo
    Tasquier, Luca
    Aversa, Rocco
    2013 EIGHTH INTERNATIONAL CONFERENCE ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING (3PGCIC 2013), 2013, : 276 - 283
  • [10] A Framework for Intrusion Tolerance in Cloud Computing
    Karande, Vishal M.
    Pais, Alwyn R.
    ADVANCES IN COMPUTING AND COMMUNICATIONS, PT 4, 2011, 193 : 386 - 395