ResearchBib Share Your Research, Maximize Your Social Impacts
Sign for Notice Everyday Sign up >> Login

A Temporal Logic Based Approach to Multi-Agent Intrusion Detection and Prevention

Journal: International Journal of Communication Network and Security (Vol.1, No. 1)

Publication Date:

Authors : ; ;

Page : 53-61

Keywords : Multi-agent systems; Intrusion Detection; Intrusion Prevention; temporal logic; intelligent security; Alternating-time Temporal Epistemic Logic;

Source : Downloadexternal Find it from : Google Scholarexternal

Abstract

Collaborative systems research in the last decade have led to the development in several areas ranging from social computing, e-learning systems to management of complex computer networks.Intrusion Detection Systems (IDS) available today have a number of problems that limit their configurability, scalability or efficiency. An important shortcoming is that the existing architectures is built around a single entity that does most of the data collection and analysis. This work introduces a new architecture for intrusion detection and prevention based on multiple autonomous agents working collectively. We adopt a temporal logic approach to signature-based intrusion detection. We specify intrusion patterns as formulas in a monitorable logic called EAGLE. We also incorporate logics of knowledge into the agents. We implement a prototype tool,called MIDTL and use this tool to detect a variety of security attacks in large log-files provided by DARPA.

Last modified: 2013-09-21 16:30:39