AIDeM: Agent-Based Intrusion Detection Mechanism

The availability of services can be comprimised if a service request sent to the web services server hides some form of attack within its contents. This article presents AIDeM (An Agent-Based Intrusion Detection Mechanism), an adaptive solution for dealing with DoS attacks in Web service environment...

Descripción completa

Detalles Bibliográficos
Autores: Pinzón Trejos, Cristian, Navarro, Martí, Bajo, Javier
Tipo de recurso: artículo
Estado:Versión publicada
Fecha de publicación:2010
País:Panamá
Institución:Universidad Tecnológica de Panamá
Repositorio:Repositorio Institucional de documento digitales de acceso abierto de la UTP
Idioma:inglés
OAI Identifier:oai:ridda2.utp.ac.pa:123456789/4798
Acceso en línea:http://ridda2.utp.ac.pa/handle/123456789/4798
Access Level:acceso abierto
Palabra clave:Availability
Web Service Attack
Multi-agent
case-based reasoning
Descripción
Sumario:The availability of services can be comprimised if a service request sent to the web services server hides some form of attack within its contents. This article presents AIDeM (An Agent-Based Intrusion Detection Mechanism), an adaptive solution for dealing with DoS attacks in Web service environments. The solution proposes a two phased mechanism in which each phase incorporates a special type of CBR-BDI agent that functions as a classifier. In the first phase, a case-based reasoning (CBR) engine utilizes a Naïves Bayes strategy to carry out an initial filter, and in the second phase, a CBR engine incorporates a neural network to complete the classification mechanism. AIDeM has been applied within the FUSION@ architecture to improve its current security mechanism. A prototype of the architecture was developed and applied to a case study. The results obtained are presented in this study.