A Temporal Logic Based Approach to Multi-Agent Intrusion Detection and Prevention
Journal: International Journal of Communication Network and Security (Vol.1, No. 1)Publication Date: 2011-07-11
Authors : Paritosh Das; Rajdeep Niyogi;
Page : 53-61
Keywords : Multi-agent systems; Intrusion Detection; Intrusion Prevention; temporal logic; intelligent security; Alternating-time Temporal Epistemic Logic;
Abstract
Collaborative systems research in the last decade have led to the development in several areas ranging from social computing, e-learning systems to management of complex computer networks.Intrusion Detection Systems (IDS) available today have a number of problems that limit their configurability, scalability or efficiency. An important shortcoming is that the existing architectures is built around a single entity that does most of the data collection and analysis. This work introduces a new architecture for intrusion detection and prevention based on multiple autonomous agents working collectively. We adopt a temporal logic approach to signature-based intrusion detection. We specify intrusion patterns as formulas in a monitorable logic called EAGLE. We also incorporate logics of knowledge into the agents. We implement a prototype tool,called MIDTL and use this tool to detect a variety of security attacks in large log-files provided by DARPA.
Other Latest Articles
- Equivalence of DES and AES Algorithm with Cellular Automata
- An Analysis on End-To-End Inference Methods based On Packet Probing in Network
- Reducing Throughput-delay Analysis of Conflict?free Scheduling in Multihop Adhoc Networks
- Incursion Model for Nomenclature of EEG Signals via Wavelet Transform
- Impact of Mobility models on Mobile Sensor Networks
Last modified: 2013-09-21 16:30:39