loading...
Indra: A peer-to-peer approach to network intrusion detection and prevention
Linz, Austria June 09-June 11
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ENABL.2003.1231412Twelfth International Workshop on Ena ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Ramaprabhu Janakiraman, Washington University in St. Louis
Marcel Waldvogel, IBM Research
Qi Zhang, Microsoft Inc.
While the spread of the Internet has made the network ubiquitous, it has also rendered networked systems vulnerable to malicious attacks orchestrated from anywhere. These attacks or intrusions typically start with attackers infiltrating a network through a vulnerable host and then launching further attacks on the local network or Intranet. Attackers rely on increasingly sophisticated techniques like using distributed attack sources and obfuscating their network addresses. On the other hand, software that guards against them remains rooted in traditional centralized techniques, presenting an easily-targeted single point of failure. Scalable, distributed network intrusion prevention techniques are sorely needed.
We propose Indra-a distributed scheme based on sharing information between trusted peers in a network to guard the network as a whole against intrusion attempts. We present initial ideas for running Indra over a peer-to-peer infrastructure to distribute up-to-date rumors, facts, and trust information in a scalable manner.
Citation:
Ramaprabhu Janakiraman, Marcel Waldvogel, Qi Zhang, "Indra: A peer-to-peer approach to network intrusion detection and prevention," wetice, pp.226, Twelfth International Workshop on Enabling Technologies: Infrastructure for Collaborative Enterprises, 2003
Usage of this product signifies your acceptance of the Terms of Use.