MetaCartSign in to MyCiteSeer

Include Citations | Advanced Search | Help

Include Citations | Advanced Search | Help

  Indra: A Distributed Approach to Network Intrusion Detection and Prevention (2001) [3 citations — 0 self]

Download:
Download as a PDF
by Qi Zhang, Ramaprabhu Janakiraman
http://www.cs.wustl.edu/cs/techreports/2001/wucs-01-30.pdf
Add To MetaCart

Abstract:

Abstract—While advances in computer and communications technology have made the network ubiquitous, they have also rendered networked systems vulnerable to malicious attacks orchestrated from a distance. These attacks, usually called cracker attacks or intrusions, start with crackers infiltrating a network through a vulnerable host and then going on to launch further attacks. Crackers depend on increasingly sophisticated techniques like using distributed attack sources. On the other hand, software that guards against them remains rooted in traditional centralized techniques, presenting an easily-targetable single point of failure. Scalable, distributed network intrusion prevention software is sorely needed. We propose Indra – a distributed scheme that depends on sharing information between trusted peers in a network to guard the network as a whole against intrusion attempts. We further describe a plugin mechanism that enables an administrator to simultaneously plug weaknesses in thousands of machines with a single E-Mail. A. Background I.

Citations

239 Event monitoring enabling responses to anomalous live disturbances – PORRAS, NEUMANN - 1997
232 ALMI: An Application Level Multicast Infrastructure – Pendarakis, Shi, et al. - 2001
120 Computer Immunology – Forrest, Hofmeyr, et al. - 1997
110 An architecture for intrusion detection using autonomous agents – Balasubramaniyan, Garcia-Fernandez, et al. - 1998
106 Scalable reliable multicast using multiple multicast channels – Kasera, Hjalmtusson, et al. - 2000
99 Implementing a Distributed Firewall – Ioannidis, Keromytis, et al. - 2000
85 An Analysis of Security Incidents on the Internet – Howard - 1998
62 Cooperating security managers: A peer-based intrusion detection system – White, Fisch, et al. - 1996
61 GrIDS: A GraphBased Intrusion Detection System for Large Networks – Staniford-Chen, Crawford, et al.
56 Defending a Computer System using Autonomous Agents – Crosbie, Spafford - 1995
49 Intelligent agents for intrusion detection – Helmer, Wong, et al. - 1998
35 Research in intrusion-detection systems: A survey – Axelsson - 1998