【24h】

Self-organized Collaboration of Distributed IDS Sensors

机译:分布式IDS传感器的自组织协作

获取原文

摘要

We present a distributed self-organized model for collaboration of multiple heterogeneous IDS sensors. The distributed model is based on a game-theoretical approach that optimizes behavior of each IDS sensor with respect to other sensors in highly dynamic environments. We propose a general formalization of the problem of distributed collaboration as a game between defenders and attackers and introduce e-FIRE, a solution concept suitable for solving this game in highly dynamic environments. Our experimental evaluation of the proposed collaboration model on real network traffic clearly shows improvements in the detection capabilities of all IDS sensors, allowing each system to specialize on particular network activities while not reducing the overall effectiveness. The concept of opponent aware, self-coordinating and strategically reasoning Network Intrusion Detection Networks allows effective collaboration of individual system defenders that may match a market-based collaboration structures of the attackers.
机译:我们提出了一种用于多个异构IDS传感器协作的分布式自组织模型。分布式模型基于一种博弈论方法,该方法可以在高动态环境中相对于其他传感器优化每个IDS传感器的行为。我们提出了将分布式协作问题作为防御者和攻击者之间的游戏的一般形式,并介绍了e-FIRE,这是一种适合在高度动态的环境中解决此游戏的解决方案概念。我们对实际网络流量上建议的协作模型的实验评估清楚地表明,所有IDS传感器的检测功能都有改进,使每个系统都可以专注于特定的网络活动,而不会降低整体效率。对手感知,自我协调和战略推理的概念网络入侵检测网络可以使各个系统防御者进行有效的协作,从而可以与攻击者基于市场的协作结构相匹配。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号