A Service Based Approach to a New Generation of Intrusion Detection Systems

BOSIN, ANDREA;DESSI, NICOLETTA;PES, BARBARA
2008-01-01

Abstract

Intrusion Detection Systems (IDSs) aim at detecting malicious or unauthorized activities targeting a network and its resources. Usually engineered as self-contained applications, current IDSs are limited in protecting collaborative computing environments, like grids, whose security amplifies the concerns about intrusions and motivates advanced organizing paradigms and technical solutions for effective attack detection. We envision a new generation of IDSs defined by a set of services supporting security managers in improving the overall network security. Specifically, we show how to model the ID processes as a set of plans that a security manager may go through on a network of cooperative nodes interacting with one another in order to offer or to ask for services. Services correspond to specialized ID tasks and encapsulate problem solving and simulation capabilities. Complex ID activities are expressed by workflows, the focus being on flexibility, reuse and interoperability of ID services. Some implementation hints are suggested.
2008
ECOWS 2008, Sixth European Conference on Web Services. Proceedings
978-0-7695-3399-5
IEEE
NEW YORK
215
224
10
http://doi.ieeecomputersociety.org/10.1109/ECOWS.2008.16
http://ieeexplore.ieee.org/xpl/freeabs_all.jsp?arnumber=4711665
2008 Sixth European Conference on Web Services (ECOWS'08)
contributo
Esperti anonimi
November 12-14, 2008
Dublin, Ireland
internazionale
4 Contributo in Atti di Convegno (Proceeding)::4.1 Contributo in Atti di convegno
Bosin, Andrea; Dessi, Nicoletta; Pes, Barbara
273
3
4.1 Contributo in Atti di convegno
none
info:eu-repo/semantics/conferenceObject
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Questionario e social

Condividi su:
Impostazioni cookie