An Integrated Intrusion Detection System for a Large-scale Network Environment 


Vol. 29,  No. 7, pp. 985-996, Jul.  2004


PDF
  Abstract

In order to solve the increasing security problems, IDSs(Intrusion Detection System) have appeared. However, local IDSs have a limit to detect various intrusions in a large-scale network environment. So there are a lot of researches in progress which organize the elements of IDS in a distributed or hierarchical manner. In this paper, we design a integrated IDS which exchanges messages between them through the standardized message format (lDMEF) and communication protocol (IDXP). We also propose a policy profile for an effective control of IDSs, and employ the PKI mechanism for mutual authentication. We implement a prototype system for the proposed IDSs communicating with Snort and analyze its performance.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

J. Ahn, J. Cho, B. Jeong, "An Integrated Intrusion Detection System for a Large-scale Network Environment," The Journal of Korean Institute of Communications and Information Sciences, vol. 29, no. 7, pp. 985-996, 2004. DOI: .

[ACM Style]

Jeong-Mo Ahn, Jinsung Cho, and Byeong-Soo Jeong. 2004. An Integrated Intrusion Detection System for a Large-scale Network Environment. The Journal of Korean Institute of Communications and Information Sciences, 29, 7, (2004), 985-996. DOI: .

[KICS Style]

Jeong-Mo Ahn, Jinsung Cho, Byeong-Soo Jeong, "An Integrated Intrusion Detection System for a Large-scale Network Environment," The Journal of Korean Institute of Communications and Information Sciences, vol. 29, no. 7, pp. 985-996, 7. 2004.