首页> 外文会议>International Conference on Telecommunication Systems: Modeling and Analysis >An adaptive software approach to intrusion detection and response
【24h】

An adaptive software approach to intrusion detection and response

机译:入侵检测和响应的自适应软件方法

获取原文

摘要

This paper proposes the use of programming language constructs to support adaptive self-monitoring and self-reporting software. The methods are particularly well-suited to wireless mobile devices, where limited resources may constrain the use of certain software audits. An adaptive software architecture is described that supports run-time transformations on software components, enabling them to report internal details on how they are being used to other parts of the system. Effectively, any component of the system can be turned into an "informer" at run time, and the nature of the reported information can be adapted dynamically based on changing conditions or directives from another authority, such as an intrusion detection system. A prototype implementation is described. The operation of the system is demonstrated through an experiment in which it detects and responds to a malicious host that multicasts "noise" packets to a wireless iPAQ handheld computer.
机译:本文建议使用编程语言构造来支持自适应自我监控和自我报告软件。这些方法特别适合于无线移动设备,其中有限的资源可能会限制某些软件审核的使用。描述了一个适应性软件架构,支持软件组件上的运行时转换,使它们能够报告它们如何用于系统的其他部分的内部详细信息。有效地,系统的任何组件都可以在运行时变成“甲运人”,并且报告信息的性质可以基于从另一个权限的改变条件或指令动态调整,例如入侵检测系统。描述了原型实现。通过实验证明了系统的操作,其中它检测到并响应多播“噪声”分组到无线iPAQ手持计算机的恶意主机。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号