Open Access Open Access  Restricted Access Subscription Access

Distributed Hierarchical Pattern-Matching for Network Intrusion Detection

Zubair Baig,
Khaled Salah,

Abstract


Network intrusion detection systems are widely used in present-day public and private networks to successfully detect cyber intrusions. In recent times, a plethora of readily available hacking tools have widened the adversarial attack surface to launch advanced malicious attacks. This entails the need to devise and deploy stronger security solutions including countermeasures that prevent, detect, and deter such attacks. The need for an efficient and effective mechanism for detecting network intrusions in real-time cannot be understated. Distributed pattern matching through information sharing between intrusion detection agents is one such approach towards identifying anomalous activity in a network. In this paper, a novel distributed pattern matching approach is proposed for detecting malicious network activities through first analyzing network traffic by detector agents, and subsequently exchanging information (subpattern) among detector agents in order to holistically identify anomalous network activities. The detection effectiveness of the proposed approach is studied using simulation conducted considering different pattern exchange hierarchies. Simulation results show that our approach yields high accuracies in intrusion detection with low false alarm rates.

Keywords


Network security; Pattern matching; Intrusion detection; Distributed information processing

Citation Format:
Zubair Baig, Khaled Salah, "Distributed Hierarchical Pattern-Matching for Network Intrusion Detection," Journal of Internet Technology, vol. 17, no. 2 , pp. 167-178, Mar. 2016.

Full Text:

PDF

Refbacks

  • There are currently no refbacks.





Published by Executive Committee, Taiwan Academic Network, Ministry of Education, Taipei, Taiwan, R.O.C
JIT Editorial Office, Office of Library and Information Services, National Dong Hwa University
No. 1, Sec. 2, Da Hsueh Rd., Shoufeng, Hualien 974301, Taiwan, R.O.C.
Tel: +886-3-931-7314  E-mail: jit.editorial@gmail.com