Distributed Network Intrusion Detection Systems: An Artificial Immune System Approach

2016 IEEE First International Conference on Connected Health: Applications, Systems and Engineering Technologies (CHASE)(2016)

引用 37|浏览1
暂无评分
摘要
Intrusion detection is the identification of unauthorized use, misuse, and abuse of computer system infrastructures by both system insiders and external intruders. Detecting intrusion in distributed network from outside network segment as well as from inside is a difficult problem. Network based Intrusion Detection System (NIDS) must analyze a large volume of data while not placing a significant added load on the monitoring systems and networks. This paper presents a framework for a distributed network intrusion detection system (dNIDS) based on the artificial immune system concept. In this framework, an adaptive immune mechanism through unsupervised machine learning methods is proposed to classify network traffic into either normal ("self") and suspicious profiles ("non-self") respectively. Experimentally, our approach distributes the NIDS among all connected network segments, allowing NIDS in each segment to identify potential threats individually and enabling the sharing of identified threat vectors between the communicating distributed NIDSs. Analysis of the technique for distribution of this information about threat vectors is presented.
更多
查看译文
关键词
Artificial Immune System,Negative Selection,Genetic Algorithm,IDS,dNIDS
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要