• DocumentCode
    1959378
  • Title

    A Security Decision-Reaction Architecture for Heterogeneous Distributed Network

  • Author

    Feltus, Christophe ; Khadraoui, Djamel ; Aubert, Jocelyn

  • Author_Institution
    Centre for IT Innovation, Public Res. Centre Henri Tudor, Luxembourg, Luxembourg
  • fYear
    2010
  • fDate
    15-18 Feb. 2010
  • Firstpage
    1
  • Lastpage
    8
  • Abstract
    The main objective of this paper is to provide a global decision-reaction architectural built on the requirements for a reaction after alert detection mechanisms in the frame of information systems security and more particularly applied to telecom infrastructures security. These infrastructures are distributed in nature, therefore the architecture is elaborated using the multi-agents system that provides the advantages of autonomous and interaction facilities, and has been associated to the ontoBayes model for decision support mechanism. This model helps agents to make decisions according to preference values and is built upon ontology based knowledge sharing, bayesian networks based uncertainty management and influence diagram based decision support. The Multi-Agent System decision-reaction architecture is developed in a distributed perspective and is composed of three basic layers: low level, intermediate level and high level. The proposed approach has been illustrated based on the network architecture for heterogeneous mobile computing developed by the BARWAN project. Accordingly: the Building Area constitutes the low level and aims to be the interface between the main architecture and the targeted infrastructure. The Campus-Area is the intermediate level responsible of correlating the alerts coming from different domains of the infrastructure and to smartly deploy the reaction actions.
  • Keywords
    belief networks; computer network security; decision support systems; information networks; mobile computing; multi-agent systems; uncertainty handling; BARWAN project; alert detection mechanisms; bayesian networks based uncertainty management; decision support mechanism; heterogeneous distributed network; heterogeneous mobile computing; influence diagram based decision support; information systems security; multiagents system; ontoBayes model; ontology based knowledge sharing; security decision reaction architecture; telecom infrastructures security; Bayesian methods; Computer architecture; Computer network management; Information security; Information systems; Knowledge management; Multiagent systems; Ontologies; Telecommunications; Uncertainty; bayesian network; decision system; distributed network; multi agent system; reaction; security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability, and Security, 2010. ARES '10 International Conference on
  • Conference_Location
    Krakow
  • Print_ISBN
    978-1-4244-5879-0
  • Type

    conf

  • DOI
    10.1109/ARES.2010.57
  • Filename
    5438119