Implementation of an Intrusion Detection System Based on Mobile Agents

  • Authors:
  • Mauro Cesar Bernardes;Edson dos Santos Moreira

  • Affiliations:
  • -;-

  • Venue:
  • PDSE '00 Proceedings of the International Symposium on Software Engineering for Parallel and Distributed Systems
  • Year:
  • 2000

Quantified Score

Hi-index 0.00

Visualization

Abstract

The number of security-breaking attempts originated inside the organizations is increasing steadily. Attacks made in this way, usually done by 驴authorized驴 users of the system, cannot be immediately located. As the idea of filtering, the traffic at the 驴entrance door驴 (by firewalls, for instance) is not completely successful, the use of other technologies should be considered to increase the defense capacity of a site. Therefore, the introduction of mobile agents to provide the computational security by constantly moving around within the internal infoways of an organization is presented as a natural solution to prevent both external and the internal sources of intrusion. This work presents an evaluation of the use of mobile agents mechanisms to add mobility features to the process of monitoring intrusion in computational systems. A modular approach is proposed, where independent small agents will monitor the communication paths. This approach presents significant advantages in terms of minimizing overhead, increasing scalability and flexibility and providing fault tolerance.