Title :
Design and modeling of collaboration architecture for security
Author :
Bye, Rainer ; Camtepe, Seyit A. ; Albayrak, Sahin
Author_Institution :
DAI-Labor, Tech. Univ. Berlin, Berlin
Abstract :
Threats against computer networks evolve very fast and require more and more complex measures. We argue that teams respectively groups with a common purpose for intrusion detection and prevention improve the measures against rapid propagating attacks similar to the concept of teams solving complex tasks known from field of work sociology. Collaboration in this sense is not easy task especially for heterarchical environments. We propose CIMD (collaborative intrusion and malware detection) as a security overlay framework to enable cooperative intrusion detection approaches. Objectives and associated interests are used to create detection groups for exchange of security-related data. In this work, we contribute a tree-oriented data model for device representation in the scope of security. We introduce an algorithm for the formation of detection groups, show realization strategies for the system and conduct vulnerability analysis. We evaluate the benefit of CIMD by simulation and probabilistic analysis.
Keywords :
computer networks; groupware; invasive software; probability; trees (mathematics); collaborative intrusion detection; computer networks; intrusion prevention; malware detection; probabilistic analysis; tree-oriented data model; Algorithm design and analysis; Analytical models; Collaboration; Collaborative work; Computer architecture; Computer networks; Data models; Data security; Intrusion detection; Sociology; Architectures and Design of Collaborative Systems; Collaborative Intrusion and Malware Detection; Enterprise Security; Intrusion Detection; Modeling and Simulation of Collaboration; Peer-to-Peer for Security;
Conference_Titel :
Collaborative Technologies and Systems, 2009. CTS '09. International Symposium on
Conference_Location :
Baltimore, MD
Print_ISBN :
978-1-4244-4584-4
Electronic_ISBN :
978-1-4244-4586-8
DOI :
10.1109/CTS.2009.5067498