• DocumentCode
    3753267
  • Title

    Dynamic IDS Configuration in the Presence of Intruder Type Uncertainty

  • Author

    Xiaofan He;Huaiyu Dai;Peng Ning;Rudra Dutta

  • Author_Institution
    Dept. of ECE, North Carolina State Univ., Raleigh, NC, USA
  • fYear
    2015
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    Intrusion detection systems (IDSs) assume increasingly importance in past decades as information systems become ubiquitous. Despite the abundance of intrusion detection algorithms developed so far, there is still no single detection algorithm or procedure that can catch all possible intrusions; also, simultaneously running all these algorithms may not be feasible for practical IDSs due to resource limitation. For these reasons, effective IDS configuration becomes crucial for real-time intrusion detection. However, the uncertainty in the intruder´s type and the (often unknown) dynamics involved with the target system pose challenges to IDS configuration. Considering these challenges, the IDS configuration problem is formulated as an incomplete information stochastic game in this work, and a new algorithm, Bayesian Nash-Q learning, that combines conventional reinforcement learning with a Bayesian type identification procedure is proposed. Numerical results show that the proposed algorithm can identify the intruder´s type with high fidelity and provide effective configuration.
  • Keywords
    "Libraries","Intrusion detection","Heuristic algorithms","Games","Bayes methods","Load modeling"
  • Publisher
    ieee
  • Conference_Titel
    Global Communications Conference (GLOBECOM), 2015 IEEE
  • Type

    conf

  • DOI
    10.1109/GLOCOM.2015.7417158
  • Filename
    7417158