{"title":"From using description logics to handling inconsistency in cooperative intrusion detection","authors":"S. Yahi, S. Benferhat, Tayeb Kenaza","doi":"10.1109/ICMWI.2010.5648177","DOIUrl":null,"url":null,"abstract":"Cooperative intrusion detection consists in using several IDS and other analyzers in order to supply an overview of the system under consideration. In this case, the definition of a shared vocabulary describing the different information is prominent. Since these pieces of information are structured, we propose in this paper to use description logics which ensure the reasoning decidability. Besides, the analyzers used in cooperative intrusion detection are not totally reliable. Consequently, the cooperation could easily generate conflicts or inconsistencies. We propose in this paper to handle these inconsistencies using the so-called partial lexicographic inference.","PeriodicalId":404577,"journal":{"name":"2010 International Conference on Machine and Web Intelligence","volume":"765 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-11-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 International Conference on Machine and Web Intelligence","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICMWI.2010.5648177","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Cooperative intrusion detection consists in using several IDS and other analyzers in order to supply an overview of the system under consideration. In this case, the definition of a shared vocabulary describing the different information is prominent. Since these pieces of information are structured, we propose in this paper to use description logics which ensure the reasoning decidability. Besides, the analyzers used in cooperative intrusion detection are not totally reliable. Consequently, the cooperation could easily generate conflicts or inconsistencies. We propose in this paper to handle these inconsistencies using the so-called partial lexicographic inference.