Other formats:
BibTeX
LaTeX
RIS
@inproceedings{746156, author = {Čeleda, Pavel and Krmíček, Vojtěch and Rehák, Martin and Medvigy, David}, address = {Los Alamitos, California}, booktitle = {Intelligent Agent Technology}, keywords = {high-speed network; traffic acquisition; agent system}, language = {eng}, location = {Los Alamitos, California}, isbn = {978-0-7695-3027-7}, pages = {477-480}, publisher = {IEEE Computer Society}, title = {High-Speed Network Traffic Acquisition for Agent Systems}, url = {http://doi.ieeecomputersociety.org/10.1109/IAT.2007.59}, year = {2007} }
TY - JOUR ID - 746156 AU - Čeleda, Pavel - Krmíček, Vojtěch - Rehák, Martin - Medvigy, David PY - 2007 TI - High-Speed Network Traffic Acquisition for Agent Systems PB - IEEE Computer Society CY - Los Alamitos, California SN - 9780769530277 KW - high-speed network KW - traffic acquisition KW - agent system UR - http://doi.ieeecomputersociety.org/10.1109/IAT.2007.59 N2 - This paper presents a design of high-speed network traffic acquisition subsystem suitable for agent-based intrusion detection systems. To match the performance requirements and to improve network traffic measurement, wire-speed data acquisition layer is based on hardware-accelerated probes, which provide real-time network traffic statistics. The network traffic is stored in collector servers and preprocessed data is then sent to detection agents that use heterogenous anomaly detection methods. These methods are correlated by means of trust and reputation models, and the conclusions regarding the maliciousness of the traffic is presented to the operator. Presented system is designed to improve the performance of agent-based intrusion detection systems and allow them to efficiently identify malicious traffic. The main contribution of presented system is its ability to aggregate real-time network-wide statistics from geographically dispersed probes. Traffic acquisition system is designed for deployment on high-speed backbone networks. ER -
ČELEDA, Pavel, Vojtěch KRMÍČEK, Martin REHÁK and David MEDVIGY. High-Speed Network Traffic Acquisition for Agent Systems. In \textit{Intelligent Agent Technology}. Los Alamitos, California: IEEE Computer Society, 2007, p.~477-480. ISBN~978-0-7695-3027-7.
|