【24h】

A Dependable Intrusion Detection Architecture Based on Agreement Services

机译:基于协议服务的可靠入侵检测架构

获取原文
获取原文并翻译 | 示例

摘要

In this paper, we show that the use of diversified COTS servers allows to detect intrusions corresponding to unknown attacks. We present an architecture that ensures both confidentiality and integrity at the COTS server level and we extend it to enhance availability. Replication techniques implemented on top of agreement services are used to avoid any single point of failure. On the one hand we assume that COTS servers are complex softwares that contain some vulnerabilities and thus may exhibit arbitrary behaviors. While on the other hand other basic components of the proposed architecture are simple enough to be exhaustively verified. That's why we assume that they can only suffer from crash failures. The whole system is assumed to be asynchronous and furthermore messages can be lost. In the particular case of Web servers connected to databases, we identify the properties that have to be maintained and the alarms that have to be raised. We describe in details how the different replicated levels interact together and, for each level, we precise the reasons that have led us to use a particular agreement service. Performance evaluations are conducted to measure the quality of service of the Intrusion Detection System (quantity of false positives and lack of false negatives) and the additional cost induced by the mechanisms used to ensure the availability of this secure architecture.
机译:在本文中,我们证明了使用多样化的COTS服务器可以检测与未知攻击相对应的入侵。我们提出了一种架构,可确保在COTS服务器级别上的机密性和完整性,并对其进行扩展以增强可用性。使用在协议服务之上实现的复制技术来避免任何单点故障。一方面,我们假设COTS服务器是包含某些漏洞的复杂软件,因此可能表现出任意行为。另一方面,所提出的体系结构的其他基本组件足够简单,可以进行详尽的验证。这就是为什么我们认为它们只能遭受崩溃故障的原因。假定整个系统是异步的,而且消息可能会丢失。在连接到数据库的Web服务器的特定情况下,我们确定必须维护的属性和必须引发的警报。我们详细描述了不同的复制级别如何相互作用,对于每个级别,我们都精确地阐明了导致我们使用特定协议服务的原因。进行性能评估以衡量入侵检测系统的服务质量(错误肯定的数量和错误否定的数量)以及用于确保此安全体系结构可用性的机制所引起的额外成本。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号