Title :
A Context-Based Analysis of Intrusion Detection for Policy Violation
Author :
Wan, Kaiyu ; Alaga, Vasu ; Yang, Zhong Yuan
Abstract :
Existing intrusion detection systems (IDS) operate inde- pendently from security policy enforcement mechanism. In current IDS the functionality has been restricted to detect- ing only anomaly in system behavior and system misuse. In order to assist system administrators in restoring and strengthening system security after an intrusion is detected this paper proposes a method that will link the security vi- olation to a non-empty subset of the policy base. A multi- agent system is proposed to automate the intrusion detec- tion and analysis. Keywords: Intrusion detection, security context, policy base
Keywords :
Authorization; Computer science; Computer security; Data security; Fires; Intrusion detection; Law; Legal factors; Multiagent systems; Partial response channels;
Conference_Titel :
Computational Intelligence and Security, 2007 International Conference on
Conference_Location :
Harbin
Print_ISBN :
0-7695-3072-9
Electronic_ISBN :
978-0-7695-3072-7
DOI :
10.1109/CIS.2007.174