• DocumentCode
    1859241
  • Title

    A Service Based Approach to a New Generation of Intrusion Detection Systems

  • Author

    Bosin, Andrea ; Dessi, Nicoletta ; Pes, Barbara

  • Author_Institution
    Dipt. di Mat. e Inf., Univ. degli Studi di Cagliari, Cagliari
  • fYear
    2008
  • fDate
    12-14 Nov. 2008
  • Firstpage
    215
  • Lastpage
    224
  • Abstract
    Intrusion detection systems (IDSs) aim at detecting malicious or unauthorized activities targeting a network and its resources. Usually engineered as self-contained applications, current IDSs are limited in protecting collaborative computing environments, like grids, whose security amplifies the concerns about intrusions and motivates advanced organizing paradigms and technical solutions for effective attack detection. We envision a new generation of IDSs defined by a set of services supporting security managers in improving the overall network security. Specifically, we show how to model the ID processes as a set of plans that a security manager may go through on a network of cooperative nodes interacting with one another in order to offer or to ask for services. Services correspond to specialized ID tasks and encapsulate problem solving and simulation capabilities. Complex ID activities are expressed by workflows, the focus being on flexibility, reuse and interoperability of ID services. Some implementation hints are suggested.
  • Keywords
    security of data; attack detection; intrusion detection systems; service based approach; Computer network management; Data security; Distributed computing; Grid computing; Identity management systems; Information analysis; Information security; Intrusion detection; Proposals; Protection; Grid; Intrusion Detection Systems; Service Composition; Service Oriented Architectures; Workflows;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    on Web Services, 2008. ECOWS '08. IEEE Sixth European Conference
  • Conference_Location
    Dublin
  • Print_ISBN
    978-0-7695-3399-5
  • Type

    conf

  • DOI
    10.1109/ECOWS.2008.16
  • Filename
    4711665