Title :
A performance-based grid intrusion detection system
Author :
Leu, Fang-Yie ; Lin, Jia-Chun ; Li, Ming-Chang ; Yang, Chao-Tung
Author_Institution :
Dept. of Comput. Sci. & Inf. Eng., Tunghai Univ., Taichung, Taiwan
Abstract :
Distributed denial-of-service (DDoS) and denial-of-service (DoS) are the most dreadful network threats in recent years. In this paper, we propose a grid-based IDS, called performance-based grid intrusion detection system (PGIDS), which exploits grid´s abundant computing resources to detect enormous intrusion packets and improve the drawbacks of traditional IDSs which suffer from losing their detection effectiveness and capability when processing massive network traffic. For balancing detection load and accelerating the performance of allocating detection node (DN), we use exponential average to predict network traffic and then assign the collected actual traffic to the most suitable DN. In addition, score subtraction algorithm (SSA) and score addition algorithm (SAA) are deployed to update and reflect the current performance of a DN. PGIDS detects not only DoS/DDoS attacks but also logical attacks. Experimental results show that PGIDS is truly an outstanding system in detecting attacks.
Keywords :
backpropagation; computer network management; grid computing; resource allocation; security of data; telecommunication security; telecommunication traffic; BPNN; DDoS attacks; DoS attacks; PGIDS; backpropagation neural network; detection load balancing; detection node allocation; distributed denial-of-service; grid computing; grid-based IDS; intrusion packets; logical attacks; network threats; network traffic; performance-based grid intrusion detection system; score addition algorithm; score subtraction algorithm; Communication system traffic control; Computer crashes; Computer crime; Computer networks; Decision support systems; Floods; Grid computing; Internet; Intrusion detection; Telecommunication traffic; BPNN; DDoS; DoS; Grid; PGIDS; SAA; SSA;
Conference_Titel :
Computer Software and Applications Conference, 2005. COMPSAC 2005. 29th Annual International
Print_ISBN :
0-7695-2413-3
DOI :
10.1109/COMPSAC.2005.28