Back to Search
Start Over
RepCIDN: A Reputation-based Collaborative Intrusion Detection Network to Lessen the Impact of Malicious Alarms
- Source :
- Journal of Network and Systems Management. 21:128-167
- Publication Year :
- 2012
- Publisher :
- Springer Science and Business Media LLC, 2012.
-
Abstract
- Distributed and coordinated attacks in computer networks are causing considerable economic losses worldwide in recent years. This is mainly due to the transition of attackers' operational patterns towards a more sophisticated and more global behavior. This fact is leading current intrusion detection systems to be more likely to generate false alarms. In this context, this paper describes the design of a collaborative intrusion detection network (CIDN) that is capable of building and sharing collective knowledge about isolated alarms in order to efficiently and accurately detect distributed attacks. It has been also strengthened with a reputation mechanism aimed to improve the detection coverage by dropping false or bogus alarms that arise from malicious or misbehaving nodes. This model will enable a CIDN to detect malicious behaviors according to the trustworthiness of the alarm issuers, calculated from previous interactions with the system. Experimental results will finally demonstrate how entities are gradually isolated as their behavior worsens throughout the time.
- Subjects :
- Computer Networks and Communications
Computer science
business.industry
Strategy and Management
media_common.quotation_subject
Collective intelligence
Context (language use)
Intrusion detection system
Computer security
computer.software_genre
ALARM
Trustworthiness
Hardware and Architecture
Trust management (information system)
Intrusion prevention system
business
computer
Information Systems
Reputation
media_common
Computer network
Subjects
Details
- ISSN :
- 15737705 and 10647570
- Volume :
- 21
- Database :
- OpenAIRE
- Journal :
- Journal of Network and Systems Management
- Accession number :
- edsair.doi...........82152cdb5635f0f27f25e31a7b3c46ca
- Full Text :
- https://doi.org/10.1007/s10922-012-9230-8