Self-Organized Mechanism for Distributed Setup of Multiple Heterogeneous Intrusion Detection Systems
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F68407700%3A21230%2F13%3A00195219" target="_blank" >RIV/68407700:21230/13:00195219 - isvavai.cz</a>
Result on the web
<a href="http://dx.doi.org/10.1109/SASOW.2012.15" target="_blank" >http://dx.doi.org/10.1109/SASOW.2012.15</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/SASOW.2012.15" target="_blank" >10.1109/SASOW.2012.15</a>
Alternative languages
Result language
angličtina
Original language name
Self-Organized Mechanism for Distributed Setup of Multiple Heterogeneous Intrusion Detection Systems
Original language description
We propose a distributed and self-organized framework for collaboration of multiple heterogeneous IDS sensors. The framework is based on a game-theoretical approach that optimizes behavior of each IDS sensor with respect to other sensors in highly dynamic environments. We formalize the proposed collaborative architecture as a game between defenders and attackers and transform the hard problem of heterogeneous collaboration into an easier problem of finding two functions that are used in the game-theoretical model to specialize the detection mechanisms on a specific type of malicious activity. The collaboration of such more specialized IDS nodes covers much wider range of attack classes, allowing the collaborating system to maximize the overall networksecurity awareness. We have evaluated the proposed concept on real networks, where we have shown considerable improvements in the detection capabilities of intrusion detection devices thanks to the proposed collaboration model.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
JC - Computer hardware and software
OECD FORD branch
—
Result continuities
Project
Result was created during the realization of more than one project. More information in the Projects tab.
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)<br>S - Specificky vyzkum na vysokych skolach
Others
Publication year
2013
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
Adaptive Host and Network Security
ISBN
978-0-7695-4895-1
ISSN
—
e-ISSN
—
Number of pages
8
Pages from-to
31-38
Publisher name
Dynamic Object Language Labs
Place of publication
Lyon
Event location
Lyon
Event date
Sep 14, 2012
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
—