Bogdan Ghit, Octavian Voicu, Florin Pop, V. Cristea
{"title":"Distributed Agent Platform with Intrusion Detection Capabilities","authors":"Bogdan Ghit, Octavian Voicu, Florin Pop, V. Cristea","doi":"10.1109/INCOS.2009.72","DOIUrl":null,"url":null,"abstract":"This paper’s goal is to design an intrusion detection system for a distributed environment adapted for developing and monitoring agents. The idea is to endow the agent platform with a high level of immunity by integrating the intrusion detection system based on artificial intelligence techniques. The agent platform itself is improved with advanced mechanisms for monitoring, analyzing, discovering, learning, and detecting intruders. The most important aspect of this platform is represented by its capability of detecting and rejecting possible intruders. The paper discusses in a critical way the traditional views of intrusion detection and analyzes the more complex approach to human immune system. The proposed architecture is a layered one and the paper describes the role and capability of each layer. The novelty of this approach is proved by the monitoring agents’ activities regarding services and actions which are translated in terms of system’s resources: processor, memory and bandwidth. The monitoring process is the key of the intrusion detection mechanism.","PeriodicalId":145328,"journal":{"name":"2009 International Conference on Intelligent Networking and Collaborative Systems","volume":"48 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-11-04","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 International Conference on Intelligent Networking and Collaborative Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/INCOS.2009.72","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 7
Abstract
This paper’s goal is to design an intrusion detection system for a distributed environment adapted for developing and monitoring agents. The idea is to endow the agent platform with a high level of immunity by integrating the intrusion detection system based on artificial intelligence techniques. The agent platform itself is improved with advanced mechanisms for monitoring, analyzing, discovering, learning, and detecting intruders. The most important aspect of this platform is represented by its capability of detecting and rejecting possible intruders. The paper discusses in a critical way the traditional views of intrusion detection and analyzes the more complex approach to human immune system. The proposed architecture is a layered one and the paper describes the role and capability of each layer. The novelty of this approach is proved by the monitoring agents’ activities regarding services and actions which are translated in terms of system’s resources: processor, memory and bandwidth. The monitoring process is the key of the intrusion detection mechanism.