A Collaborative decision making for distributed detection system

분산 탐지 시스템을 위한 협업적 의사 결정

  • Farooqi, Ashfaq Hussain (Dept. of Computer Science, National University of Computer and Emerging Sciences, Pakistan) ;
  • Jin, Wang (Dept. of Computer Engineering, Kyung Hee University) ;
  • Khan, Farrukh Aslam (Dept. of Computer Science, National University of Computer and Emerging Sciences, Pakistan) ;
  • Lee, Sung-Young (Dept. of Computer Engineering, Kyung Hee University)
  • Published : 2011.06.29

Abstract

Intrusion detection systems (IDS) are supposed to be an efficient safety measure against inside attacks. In purely distributed IDS approach, IDS agent is installed in every node. It checks abnormal behavior of neighboring nodes locally. It collects the data that it receives from nodes in its radio range. Sensor nodes audit that data and generate alerts for abnormal activity. Here, there are two ways of taking decision. First, it can take decision individually and second, it can communicate with its neighbor to find the status of the claimed compromised nodes. In this paper, we propose a collaborative decision making scheme for purely distributed detection system. The proposed scheme is light weight compared to consensus based validation methodology. It provides a better scheme to find intrusions by interacting with other nodes.

Keywords

Acknowledgement

Supported by : NIPA (National IT Industry Promotion Agency)