SkipMon: A locality-aware Collaborative Intrusion Detection System

Emmanouil Vasilomanolakis, Matthias Krugl, Carlos Garcia Cordero, Max Muhlhauser, Mathias Fischer

Research output: Contribution to book/anthology/report/conference proceedingArticle in proceedingResearchpeer-review

21 Citations (Scopus)

Abstract

Due to the increasing quantity and sophistication of cyber-attacks, Intrusion Detection Systems (IDSs) are nowadays considered mandatory security mechanisms for protecting critical networks. Research on cyber-security is moving from such isolated IDSs towards Collaborative IDSs (CIDSs) in order to protect large-scale networks. In CIDSs, a number of IDS sensors work together for creating a holistic picture of the monitored network. Our contribution in this paper is a novel distributed and scalable CIDS, called SkipMon. Our system supports, both, the idea of locality and privacy preserving communication by means of exchanging compact alert data. Furthermore, we propose a mechanism for interconnecting sensors that experience similar traffic patterns. The experimental results suggest that our CIDS, with our technique of connecting monitoring nodes that experience similar traffic, is scalable and offers a good accuracy rate compared to a centralized system with full knowledge of the participating sensors' data.

Original languageEnglish
Title of host publication2015 IEEE 34th International Performance Computing and Communications Conference, IPCCC 2015
PublisherIEEE Signal Processing Society
Publication date17 Feb 2016
Article number7410282
ISBN (Electronic)9781467385909
DOIs
Publication statusPublished - 17 Feb 2016
Externally publishedYes
Event34th IEEE International Performance Computing and Communications Conference, IPCCC 2015 - Nanjing, China
Duration: 14 Dec 201516 Dec 2015

Conference

Conference34th IEEE International Performance Computing and Communications Conference, IPCCC 2015
Country/TerritoryChina
CityNanjing
Period14/12/201516/12/2015
Series2015 IEEE 34th International Performance Computing and Communications Conference, IPCCC 2015

Bibliographical note

Publisher Copyright:
© 2015 IEEE.

Fingerprint

Dive into the research topics of 'SkipMon: A locality-aware Collaborative Intrusion Detection System'. Together they form a unique fingerprint.

Cite this