scholarly journals A Multi-Layered Approach to the Design of Intelligent Intrusion Detection and Prevention System (IIDPS)

10.28945/3370 ◽  
2009 ◽  
Author(s):  
Oludele Awodele ◽  
Sunday Idowu ◽  
Omotola Anjorin ◽  
Vincent Joshua

Ignoring security threats can have serious consequences; therefore host machines in network must continually be monitored for intrusions since they are the final endpoint of any network. As a result, this paper presents an Intelligent Intrusion Detection and Prevention System (IIDPS), which monitors a single host system from three different layers; files analyzer, system resource and connection layers. The approach introduced, a multi - layered approach, in which each layer harnesses both aspects of existing approach, signature and anomaly approaches, to achieve a better detection and prevention capabilities. The design of IIDPS consist of three basic components; the Executive which is an agent that runs in the background, iBaseline which is a database that stores the signatures of intrusions and the iManager which is a user Interface that serves as an intermediary between the IIDPS and the user. This work serves as a foundation upon which interested researchers can further build on to achieve better detection and prevention capabilities.

Author(s):  
Vetrivelan Pandu ◽  
Jagannath Mohan ◽  
T. S. Pradeep Kumar

Internet of things (IoT) has transformed greatly the improved way of business through machine-to-machine (M2M) communications. This vast network and its associated technologies have opened the doors to an increasing number of security threats which are dangerous to IoT and 5G wireless networks. The first part of this chapter presents instruction detection system (IDS) which detect the various attacks in 6LoWPAN layer. An IDS is to detect and analyze both inbound and outbound network traffic for abnormal activities. An IPS complements an IDS configuration by proactively inspecting a system's incoming traffic to weed out malicious requests. A typical IPS configuration uses web application firewalls and traffic filtering solutions to secure applications. An IPS prevents attacks by dropping malicious packets, blocking offending IPs and alerting security personnel to potential threats. Machine learning (ML)-based instruction detection and prevention system (IDPS) is proposed and implemented in Contiki simulation environment.


IEEE Access ◽  
2020 ◽  
Vol 8 ◽  
pp. 23154-23168 ◽  
Author(s):  
Jose Ribeiro ◽  
Firooz B. Saghezchi ◽  
Georgios Mantas ◽  
Jonathan Rodriguez ◽  
Raed A. Abd-Alhameed

Sign in / Sign up

Export Citation Format

Share Document