Journal of Beijing University of Posts and Telecommunications

  • EI核心期刊

JOURNAL OF BEIJING UNIVERSITY OF POSTS AND TELECOM ›› 2006, Vol. 29 ›› Issue (s2): 122-126.doi: 10.13190/jbupt.2006s2.122.298

• Papers • Previous Articles     Next Articles

Research on a message driven communication scheme for distributed intrusion detection

杜 晔1, GUO You-yan2   

  1. 1. School of Computer and Information Technology, Beijing Jiaotong University, 100044, China;
    2. Information Management, Beijing Anzhen Hospital, Beijing 100029, China
  • Received:2006-08-16 Revised:1900-01-01 Online:2006-11-30 Published:2006-11-30
  • Contact: 杜 晔

Abstract:

A message driven communication mechanism was proposed, which takes the role of transforming information, and cooperating to detect vicious behaviors. The communication models and algorithms of detector, manager and communicator were designed. The protocol presented here was divided into three layers. Then, the definitions of common used messages were given, and communication processes were designed in detail. In the end, doorknob attack was used for simulation. Experimental results showed the validity of this mechanism to detect intricate event.

Key words: intrusion detection, communication model, protocol

CLC Number: