• DocumentCode
    3082682
  • Title

    The Design of Real-Time Adaptive Forensically Sound Secure Critical Infrastructure

  • Author

    Hunt, Ray ; Slay, Jill

  • Author_Institution
    Dept. of Comput. Sci. & Software Eng., Univ. of Canterbury, Christchurch, New Zealand
  • fYear
    2010
  • fDate
    1-3 Sept. 2010
  • Firstpage
    328
  • Lastpage
    333
  • Abstract
    Network security design has seen significant advances in recent years. This has been demonstrated by a growing number of new encryption algorithms, more intelligent firewall and intrusion detection techniques, new developments in multifactor authentication, advances in malware protection and many more. During a similar period of time the industry has seen the need for network infrastructure which provides a greater degree of trust which has resulted in the development of forensic analysis tools which meet the requirements of law enforcement agencies. Such tools must provide for commercial intelligence and national security. This paper proposes that application of the common ground between security and forensics has great potential to provide for improvements in the effort to achieve real-time adaptive security. This implies an architecture which can detect security breaches and in real-time record and analyse traffic logs in a forensically sound manner, provide corrective feedback to security devices and attempt to trace back to the source of the attack. In addressing computer security and forensic analysis from a real-time perspective, this paper recognises that some of these processes already exist, but proposes methods whereby the ongoing damage and potential risk to critical infrastructure can be reduced. This requires the implementation of a highly integrated approach to security and forensics such that they can inter-work in real-time in order to address the significant security issues which currently face the industry.
  • Keywords
    authorisation; computer forensics; real-time systems; firewall; forensic analysis tools; intrusion detection techniques; multifactor authentication; network security design; real-time adaptive security; Adaptive systems; Computer architecture; Fires; Forensics; Real time systems; Security; Servers; critical infrastructure; network forensics; real-time adaptive security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network and System Security (NSS), 2010 4th International Conference on
  • Conference_Location
    Melbourne, VIC
  • Print_ISBN
    978-1-4244-8484-3
  • Electronic_ISBN
    978-0-7695-4159-4
  • Type

    conf

  • DOI
    10.1109/NSS.2010.38
  • Filename
    5635616