Fuzzy optimization for security sensors deployment in collaborative intrusion detection system

  • Authors:
  • Chengchen Hu;Zhen Liu;Zhen Chen;Bin Liu

  • Affiliations:
  • Dept. of Computer Science and Technology, Tsinghua University, Beijing, China;Dept. of Computer Science and Technology, Tsinghua University, Beijing, China;Dept. of Computer Science and Technology, Tsinghua University, Beijing, China;Dept. of Computer Science and Technology, Tsinghua University, Beijing, China

  • Venue:
  • FSKD'06 Proceedings of the Third international conference on Fuzzy Systems and Knowledge Discovery
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper argues about the deployment positions of Network-based Intrusion Detection System and suggests the “Distributed Network Security Sensors” distributed among the nodes of the internal network to monitor traffic. We study the tradeoff between cost and monitoring coverage to determine the positions and processing rates of the sensors. To handle the uncertain nature of flow, we build fuzzy expected value optimization models and develop a hybrid intelligent algorithm to obtain the deployment strategy. From the experiments in actual and synthesized network topologies, we observe that a small number of low-speed sensors are sufficient to maintain a high monitoring coverage. It also depicts that deploying DSS is much more efficient in larger topologies.