Towards automatic security management: a model-based approach

  • Authors:
  • Qian Chen;Sherif Abdelwahed;Weston Monceaux

  • Affiliations:
  • Mississippi State University;Mississippi State University;US Army Engineer Research and Development Center, Vicksburg, MS

  • Venue:
  • Proceedings of the Eighth Annual Cyber Security and Information Intelligence Research Workshop
  • Year:
  • 2013

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper introduces a security management approach that integrates system monitoring, intrusion detection, and automatic control in order to detect, classify and protect against security attacks automatically. The model-based controller computes the most effective control action to protect the system based on the system measurements, the current and the expect level of future system utilization. In this paper, we implemented the security management framework on a multi-tier enterprise system comprising a set of routers, front virtual machines and hosts and test it with respect to various forms of denial of service attacks (DoS). Throughout the experiment, the security management approach correctly detects and protects the system from these attacks. The paper presents the simulation results and discusses possible extensions of the proposed structure for other forms of DoS and network attacks.