Please use this identifier to cite or link to this item:
Title: Effective acquaintance management based on Bayesian learning for distributed intrusion detection networks
Authors: Fung, Carol J.
Zhang, Jie
Boutaba, Raouf
Keywords: DRNTU::Engineering::Computer science and engineering
Issue Date: 2012
Source: Fung, C. J., Zhang, J., & Boutaba, R. (2012). Effective Acquaintance Management based on Bayesian Learning for Distributed Intrusion Detection Networks. IEEE Transactions on Network and Service Management, 9(3), 320-332.
Series/Report no.: IEEE transactions on network and service management
Abstract: An effective Collaborative Intrusion Detection Network (CIDN) allows distributed Intrusion Detection Systems (IDSes) to collaborate and share their knowledge and opinions about intrusions, to enhance the overall accuracy of intrusion assessment as well as the ability of detecting new classes of intrusions. Toward this goal, we propose a distributed Host-based IDS (HIDS) collaboration system, particularly focusing on acquaintance management where each HIDS selects and maintains a list of collaborators from which they can consult about intrusions. Specifically, each HIDS evaluates both the false positive (FP) rate and false negative (FN) rate of its neighboring HIDSes' opinions about intrusions using Bayesian learning, and aggregates these opinions using a Bayesian decision model. Our dynamic acquaintance management algorithm allows each HIDS to effectively select a set of collaborators. We evaluate our system based on a simulated collaborative HIDS network. The experimental results demonstrate the convergence, stability, robustness, and incentive-compatibility of our system.
Fulltext Permission: none
Fulltext Availability: No Fulltext
Appears in Collections:SCSE Journal Articles

Google ScholarTM



Items in DR-NTU are protected by copyright, with all rights reserved, unless otherwise indicated.