FIDRAN: A Flexible Intrusion Detection and Response Framework for Active Networks

  • Authors:
  • Affiliations:
  • Venue:
  • ISCC '03 Proceedings of the Eighth IEEE International Symposium on Computers and Communications
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

Securing communication networks can no longer be ensuredby singular and isolated security technologies likeInternet firewalls or intrusion detection systems but rathercalls for a combination of existing and emerging detectionand response mechanisms, e.g. DDoS response mechanisms,anomaly detection, honey pots, etc. Today, mostcurrent systems prove to be too static to provide an adequateplatform for a constructive teamwork of different securitytechnologies. Therefore, we developed the FIDRANframework for flexible intrusion dection and response that isbased on an underlying active networking environment andthat allows to dynamically combine existing and emergingsecurity technologies.FIDRAN follows a highly modular approach that allowsto extend the functionality of the framework by the integrationof new security modules which are implemented asactive networking services, making use of next generationnetworks capabilities like dynamic distribution and deploymentof services on active network nodes. A further advantageof the realization of FIDRAN on top of an active networkingenvironment is the simplification and automationof maintenance work and configuration tasks.