首页> 外文会议>European Conference on Intelligence and Security Informatics >Optimization of NIDS Placement for Protection of Intercommunicating Critical Infrastructures
【24h】

Optimization of NIDS Placement for Protection of Intercommunicating Critical Infrastructures

机译:互通关键基础设施保护的NIDS安置优化

获取原文

摘要

Many Critical Infrastructures (CI) use the Internet as a means of providing services to citizens and for dispatching their own transactions. CIs, like many other organizations connected to the Internet, are prone to cyber-attacks. The attacks can originate from their trusted customers or peer CIs. Distributed network intrusion detection systems (NIDS) can be deployed within the network of national Network Service Providers to support cyber-attack mitigation. However, determining the optimal placement of NIDS devices is a complex problem that should take into account budget constraints, network topology, communication patterns, and more. In this paper we model interconnected CIs as a communication overlay network and propose using Group Betweenness Centrality as a guiding heuristic in optimizing placement of NIDS with respect to the overlay network. We analyze the effectiveness of the proposed placement strategy by employing standard epidemiological models and compare it to placement strategies suggested in the literature.
机译:许多关键基础架构(CI)使用互联网作为向公民提供服务的手段,并用于调度自己的交易。与与互联网相关的许多其他组织一样,易于网络攻击。攻击可以源自他们可信赖的客户或同伴CI。分布式网络入侵检测系统(NIDS)可以在国家网络服务提供商网络中部署,以支持网络攻击缓解。然而,确定NIDS设备的最佳放置是一个复杂的问题,应该考虑预算限制,网络拓扑,通信模式等。在本文中,我们将互连的CIS作为通信覆盖网络模型,并在优化覆盖网络中优化NID的放置时,使用组之间的基团中的群体。我们通过雇用标准流行病学模型来分析拟议的安置策略的有效性,并将其与文献中提出的放置策略进行比较。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号