Authors
Guy Helmer, Johnny Wong, Mark Slagell, Vasant Honavar, Les Miller, Yanxin Wang, Xia Wang, Natalia Stakhanova
Publication date
2007/1/1
Journal
International Journal of Information and Computer Security
Volume
1
Issue
1-2
Pages
109-142
Publisher
Inderscience Publishers
Description
The integration of Software Fault Tree (SFT), which describes intrusions and Coloured Petri Nets (CPNs) that specifies design, is examined for an Intrusion Detection System (IDS). The IDS under development is a collection of mobile agents that detect, classify, and correlate the system and network activities. SFTs, augmented with nodes that describe trust, temporal and contextual relationships, are used to describe intrusions. CPNs for intrusion detection are built using CPN templates created from the augmented SFTs. Hierarchical CPNs are created to detect critical stages of intrusions. The agentbased implementation of the IDS is then constructed from the CPNs. Examples of intrusions and descriptions of the prototype implementation are used to demonstrate how the CPN approach has been used in the development of the IDS. The main contribution of this paper is an approach to systematic specification, design …
Total citations
2001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242724468281110811333397221
Scholar articles
G Helmer, J Wong, M Slagell, V Honavar, L Miller… - International Journal of Information and Computer …, 2007