首页> 外文学位 >Attack resistant mobile agents for intrusion detection systems.
【24h】

Attack resistant mobile agents for intrusion detection systems.

机译:入侵检测系统的抗攻击移动代理。

获取原文
获取原文并翻译 | 示例

摘要

The rapid increase in attacks on computer systems has made intrusion detection systems (IDSs) increasingly popular in academic, corporate, and government networks. While IDSs are not new, research into improving their performance is ongoing. One new area involves using mobile agents in implementing intrusion detection systems. Research in this area is in its infancy and has not yet entered the mainstream community. The lack of security for mobile agents is a primary factor that has inhibited their widespread use in real-world applications, including intrusion detection systems. Thus, providing security for mobile agents is key to building useful applications based on the mobile agent paradigm.; Before these systems can be deployed in real settings, the major obstacle of providing adequate security for the agents themselves must be overcome. The core problem of such an agent-based system is this: an agent's owner cannot trust its agent, and agents and host systems do not trust each other. Worse still, if a host is penetrated and the attacker gains access to a traveling agent, he will potentially be given a wealth of new information that will help him attack other hosts in the network and further penetrate the system. If an attacker can obtain detailed knowledge of the detection systems installed at a particular site, he will be better able to avoid its triggers. Hence, security for these agents is critical. Unfortunately, solutions to many of these problems do not currently exist.; The overall intent of this research is to develop a methodology for protecting mobile agents in intrusion detection systems and to demonstrate the ability of such agents to address the shortcomings in current host-based systems. This methodology will support the defense of computer systems through a secure, mobile agent-based architecture. In support of this research, a secure mobile agent IDS prototype was created. The capabilities of this prototype as well as experimental results are described.
机译:对计算机系统的攻击迅速增加,使得入侵检测系统(IDS)在学术,企业和政府网络中越来越受欢迎。尽管IDS并不是新生事物,但有关提高其性能的研究仍在进行中。一个新领域涉及在实现入侵检测系统中使用移动代理。该领域的研究尚处于起步阶段,尚未进入主流社区。移动代理缺乏安全性是阻碍其在包括入侵检测系统在内的实际应用中广泛使用的主要因素。因此,为移动代理提供安全性是基于移动代理范例构建有用应用程序的关键。在将这些系统部署到实际环境中之前,必须克服为代理本身提供足够安全性的主要障碍。这种基于代理的系统的核心问题是:代理的所有者不能信任其代理,并且代理和主机系统彼此不信任。更糟糕的是,如果主机被入侵并且攻击者可以访问旅行代理,则可能会获得大量新信息,这些信息将帮助他攻击网络中的其他主机并进一步渗透到系统中。如果攻击者可以获得特定站点上安装的检测系统的详细知识,则他将能够更好地避免其触发因素。因此,这些代理的安全性至关重要。不幸的是,目前还没有解决这些问题的方法。这项研究的总体目的是开发一种保护入侵检测系统中的移动代理的方法,并证明这种代理解决当前基于主机的系统中的缺点的能力。这种方法将通过安全的,基于移动代理的体系结构来支持计算机系统的防御。为了支持这项研究,创建了一个安全的移动代理IDS原型。描述了该原型的功能以及实验结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号