• DocumentCode
    2222948
  • Title

    A distributed multi-level anomalies detection system using the mobile agent approach

  • Author

    Ben Ftima, F. ; Tounsi, Wiem ; Karoui, Kamel ; Ben Ghezala, Henda

  • Author_Institution
    RIADI, Univ. of Manouba, Manouba, Tunisia
  • fYear
    2009
  • fDate
    23-26 June 2009
  • Firstpage
    1
  • Lastpage
    4
  • Abstract
    Nowadays, network infrastructures are supervised by human operators. These operators are submerged by a massive surcharge of information and alerts caused by security mechanisms. In this paper, we focus particularly in anomalies detection systems and propose a multi-levels architecture allowing in one hand, the enhancement of the diagnosis´ quality for security administrator support by filtering faulty alerts and on the other hand the detection of hidden anomalies undetectable in real time; we will introduce a distributed architecture based on the mobile agents´ paradigm which exploits several types of anomalies´ detectors outputs and contributes to reduce and improve alerts at several levels in synchronous and asynchronous modes.
  • Keywords
    mobile agents; security of data; distributed architecture; distributed multilevel anomalies detection system; mobile agent approach; network infrastructure; security administrator quality; security mechanism; Communication system security; Data security; Detectors; Fault detection; Fault diagnosis; Humans; Information security; Intrusion detection; Mobile agents; Production; Anomaly Detection System; Asynchronous detection; Mobile Agents; Static Agents; Synchronous detection; component;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Infrastructure Symposium, 2009. GIIS '09. Global
  • Conference_Location
    Hammemet
  • Print_ISBN
    978-1-4244-4623-0
  • Electronic_ISBN
    978-1-4244-4624-7
  • Type

    conf

  • DOI
    10.1109/GIIS.2009.5307046
  • Filename
    5307046