Publication details

 

CAMNEP: Agent-Based Network Intrusion Detection System

Basic information
Original title:CAMNEP: Agent-Based Network Intrusion Detection System
Authors:Martin Rehák, Michal Pěchouček, Pavel Čeleda, Jiří Novotný, Pavel Minařík
Further information
Citation:REHÁK, Martin - PĚCHOUČEK, Michal - ČELEDA, Pavel - NOVOTNÝ, Jiří - MINAŘÍK, Pavel. CAMNEP: Agent-Based Network Intrusion Detection System. In Proceedings of the 7th International Conference on Autonomous Agents and Multiagent Systems (AAMAS 2008) - Industrial and Applications Track. Vyd. 1. Estoril : Inesc-Id, 2008. ISBN 978-0-9817381-3-0, pp. 133-136. 2008, Estoril, Portugal.
Original language:English
Field:Informatika
WWW:link to a new windowhttp://www.ifmas.org/Proceedings/aamas08/proceedings/pdf/industrial_application_track/AAMAS08_IndTrack_34.pdf
Type:Article in Proceedings
Keywords:trust; intrusion detection; network behavior analysis

We present a prototype of agent-based intrusion detection system designed for deployment on high-speed backbone networks. The main contribution of the system is the integration of several anomaly detection techniques by means of collective trust modeling within a group of collaborative detection agents, each featuring a specific detection algorithm. The system is based on traffic statistics in NetFlow format acquired by dedicated hardware-accelerated network cards, and is able to perform a real-time surveillance of the gigabit networks.

Related projects: