Title :
Implementation of the distributed hierarchical security operation center using mobile agent group
Author :
Li, Jung-Shian ; Hsieh, Che-Jen
Author_Institution :
Dept. of Electr. Eng., Cheng Kung Univ., Tainan, Taiwan
Abstract :
This paper proposes a novel hierarchical mobile-agent-based Security Operation Center (HMSOC) to overcome traditional SOC vulnerability in a fixed location suffering single point of failure attack. Furthermore, each division has its own alert and aggregation methodology. By IDMEF, session and timer methods, data from various divisions are fused and correlated efficiently in our proposed HMSOC. A prototype implemented in a network testbed shows HMSOC efficacy. The proposed HMSOC effectively integrates various alerts in a large network environment.
Keywords :
mobile agents; security of data; HMSOC; aggregation methodology; distributed hierarchical security operation center; hierarchical mobile agent based security operation center; Computer security; Data engineering; Data security; Distributed computing; Information security; Intrusion detection; Mobile agents; Mobile communication; National security; Robustness; Security Operation Center; mobile-agent;
Conference_Titel :
Computer Communication Control and Automation (3CA), 2010 International Symposium on
Conference_Location :
Tainan
Print_ISBN :
978-1-4244-5565-2
DOI :
10.1109/3CA.2010.5533775