Journal of
Engineering and Technology Research

  • Abbreviation: J. Eng. Technol. Res.
  • Language: English
  • ISSN: 2006-9790
  • DOI: 10.5897/JETR
  • Start Year: 2009
  • Published Articles: 198

Full Length Research Paper

New distributed platform for intrusion detection based on multi-agents system

Driss Raoui*, Siham Benhadou and Hicham Medromi
High National School of Electricity and Méchanics (ENSEM), Hassan II University, Aïn Chock, P. O. Box 8118, Oasis- Casablanca, Morocco.
Email: [email protected]

  •  Accepted: 16 August 2010
  •  Published: 31 October 2010

Abstract

 

The development and evolution of computer networks, in terms of number of users and services, are making them ever more complex and therefore vulnerable to new types of attacks. Given this complexity of attacks, intrusion detection systems, to monitor the activities of a network or a sensitive computer and to detect abnormal usage of computer resources, are expected to evolve and adapt to changes in user behavior. To improve and strengthen the mechanism of intrusion detection, we propose in this paper a new real-time distributed architecture, based on the multi-agent aspect consisting of two levels of analysis benefiting from reactive and cognitive capabilities of agents and using rules and safety procedures to detect complex attacks and intrusions that can represent low threats.

 

Key words: Security, intrusion detection, multi-agent system, analyzer, AUML.