DocumentCode :
2040737
Title :
A performance-based grid intrusion detection system
Author :
Leu, Fang-Yie ; Lin, Jia-Chun ; Li, Ming-Chang ; Yang, Chao-Tung
Author_Institution :
Dept. of Comput. Sci. & Inf. Eng., Tunghai Univ., Taichung, Taiwan
Volume :
1
fYear :
2005
fDate :
26-28 July 2005
Firstpage :
525
Abstract :
Distributed denial-of-service (DDoS) and denial-of-service (DoS) are the most dreadful network threats in recent years. In this paper, we propose a grid-based IDS, called performance-based grid intrusion detection system (PGIDS), which exploits grid´s abundant computing resources to detect enormous intrusion packets and improve the drawbacks of traditional IDSs which suffer from losing their detection effectiveness and capability when processing massive network traffic. For balancing detection load and accelerating the performance of allocating detection node (DN), we use exponential average to predict network traffic and then assign the collected actual traffic to the most suitable DN. In addition, score subtraction algorithm (SSA) and score addition algorithm (SAA) are deployed to update and reflect the current performance of a DN. PGIDS detects not only DoS/DDoS attacks but also logical attacks. Experimental results show that PGIDS is truly an outstanding system in detecting attacks.
Keywords :
backpropagation; computer network management; grid computing; resource allocation; security of data; telecommunication security; telecommunication traffic; BPNN; DDoS attacks; DoS attacks; PGIDS; backpropagation neural network; detection load balancing; detection node allocation; distributed denial-of-service; grid computing; grid-based IDS; intrusion packets; logical attacks; network threats; network traffic; performance-based grid intrusion detection system; score addition algorithm; score subtraction algorithm; Communication system traffic control; Computer crashes; Computer crime; Computer networks; Decision support systems; Floods; Grid computing; Internet; Intrusion detection; Telecommunication traffic; BPNN; DDoS; DoS; Grid; PGIDS; SAA; SSA;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer Software and Applications Conference, 2005. COMPSAC 2005. 29th Annual International
ISSN :
0730-3157
Print_ISBN :
0-7695-2413-3
Type :
conf
DOI :
10.1109/COMPSAC.2005.28
Filename :
1510079
Link To Document :
بازگشت