DocumentCode
3753267
Title
Dynamic IDS Configuration in the Presence of Intruder Type Uncertainty
Author
Xiaofan He;Huaiyu Dai;Peng Ning;Rudra Dutta
Author_Institution
Dept. of ECE, North Carolina State Univ., Raleigh, NC, USA
fYear
2015
Firstpage
1
Lastpage
6
Abstract
Intrusion detection systems (IDSs) assume increasingly importance in past decades as information systems become ubiquitous. Despite the abundance of intrusion detection algorithms developed so far, there is still no single detection algorithm or procedure that can catch all possible intrusions; also, simultaneously running all these algorithms may not be feasible for practical IDSs due to resource limitation. For these reasons, effective IDS configuration becomes crucial for real-time intrusion detection. However, the uncertainty in the intruder´s type and the (often unknown) dynamics involved with the target system pose challenges to IDS configuration. Considering these challenges, the IDS configuration problem is formulated as an incomplete information stochastic game in this work, and a new algorithm, Bayesian Nash-Q learning, that combines conventional reinforcement learning with a Bayesian type identification procedure is proposed. Numerical results show that the proposed algorithm can identify the intruder´s type with high fidelity and provide effective configuration.
Keywords
"Libraries","Intrusion detection","Heuristic algorithms","Games","Bayes methods","Load modeling"
Publisher
ieee
Conference_Titel
Global Communications Conference (GLOBECOM), 2015 IEEE
Type
conf
DOI
10.1109/GLOCOM.2015.7417158
Filename
7417158
Link To Document